Forum Discussion
Vlad2016_287645
Nimbostratus
Aug 26, 2016Reverse Proxy with LDAP Groups per URI
Hi,
I am quite new with F5 and need some tips on how to implement a solution replacing an existing Web Access Management platform with F5 APM. There are hundreds of Web Applications that should ...
Stanislas_Piro2
Cumulonimbus
Aug 26, 2016Hi,
-
for reverse proxy with group based uri access, you can create one ACL per group, and assign to groups with "AD group resource assign" (Access policy type All necessary to get "AD group resource assign" box)
-
for pool server assignment based on URI, you can use Local traffic policies which is easier than irules.
-
Before think about rewriting, you can check if app servers really need it.
- some app servers does not need rewriting as all links in response page are relative.
- some app servers support to configure reverse proxy hostname, port and protocol, all links in response page contains the right client side URL.
- if app server is defined to allow requests for a internal hostname, you can add external URI in server name configuration.
- If rewriting is necessary, try first a rewrite profile instead of irules.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects