Forum Discussion

kuldeep7985's avatar
kuldeep7985
Icon for Nimbostratus rankNimbostratus
Jul 23, 2024

F5 Waf AD integration issue

Hi all, 
I hope this message finds you well. I'm writing to bring to your attention an issue we are experiencing with access to our F5 devices. We have a total of four F5 devices, all of which are Active Directory integrated. Here's a breakdown of the current situation:

  1. Port 389 (LDAP):
    • Three out of the four devices are accessible on port 389 without any issues.
  2. Port 636 (LDAPS):
    • None of the devices are accessible on port 636 (LDAPS).
    • This includes three of the devices that are accessible on port 389.
  3. DMZ Device:
    • One device, which is located in the DMZ, is inaccessible on both ports 389 and 636

2 Replies

  • that situation basically hapens because of firewall config created by human, not limitation of the technology.
    so the solution is human compromise, i.e. set the firewall to allow related f5's ip addresses to access the ad server's ldap/s ports.