Forum Discussion
opers13_3280
Nimbostratus
Sep 08, 2009F5 and RSA Token.
we are in the process of deploying two factor authentication...do I need any "special" config on the F5 side for it to pass authentication at all?
thanks
hoolio
Cirrostratus
Sep 09, 2009If you want to have LTM perform client authentication on a VIP you would need the ACA license. You can check to see if the ACA is listed as active or optional in your /config/bigip.license or in the GUI under System | License. If you see ADD CLIENT AUTHENTICATION under the Optional section you don't have it. You can contact your F5 account manager to get a quote for adding it. You need a license per LTM unit.
There is a default LDAP authentication iRule in the /config/profile_base.conf file. You can think of that as a starting point for implementing the authentication. You'll probably want to copy the default iRule and customise it to provide better client feedback for authentication failures.
Aaron
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects