For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

THASIN's avatar
THASIN
Icon for Nimbostratus rankNimbostratus
May 14, 2014

INTRANET APPLICATION THROUGH PORTAL_ACCESS

I am currently doing APM POC.

 

Customer wants to access their intranet application through APM SSL-VPN solution.

 

Only hostname is specified in this intranet application html file

 

For example http://tnservice/default.aspx or http://server1:88/default.aspx http://helpdesk/default.html

 

FQDN - is not defined in the html file.

 

Their Active directory fully qualified domain name is tno.local.

 

I configured this intranet application through portal access full patching method and also tried minimal patching Application URI was defined as follows http://tnvservice

 

we got the DNS resolution error when accessing this application through APM portal access.

 

I configured the host entry in the f5 local hosts file still - got the DNS error.

 

I tried with stream profile attached to portal access virtual server as follows

 

source: tnservice.tno.local target: tnvservice

 

I got the initial log screen from the application after that application throws an error http://tnservice/---- not found

 

But it is working fine - via full Network access and web application access (LTM virtual server)

 

is it any other way to resolve host name specified in the application.

 

BIG-IP Software and Hardware details

 

version 11.5 LTM + APM

 

Appreciate your response and feedback

 

Regards Thasin

 

2 Replies

  • kunjan's avatar
    kunjan
    Icon for Nimbostratus rankNimbostratus

    The DNS server is it able to resolve the hostname? Have you configured the DNS server?

     

  • you should rewrite the URL. Normally it's done "automatically" in full patching mode (maybe not the case because you do not have a FQDN?) In minimal patching your can provide the rewritten hostname in the configuration screen. Try to write a FQDN instead of just a hostname for the URL