Forum Discussion

pradeepkumar020's avatar
pradeepkumar020
Icon for Nimbostratus rankNimbostratus
Apr 12, 2016

SSL client certificate LDAP authentication creating visual policy editor in APM

Hi everyone... Please tell me how to create a visual policy editor for SSL client certificate LDAP authentication... if you have any examples please share the screenshots of the vpe policy editor.... I want to use SSL client certificate LDAP authentication in Big IP APM.... Thanx in advance

 

1 Reply

  • Hello,

    You should add a client ssl profile to your VS. This profile should have the Client Authentication section completed at least with :

    • require
    • CA trusted
    • CA Advertised

    Then, you create a VPE with :

    start -> Client Cert Inspection -> (optional) CRLDP/OCSP Auth -> Logon page -> LDAP Auth -> Allow

    You need an LDAP AAA object configured.

    Don't sure if I understand correctly the LDAP authenication need. If you talk about CRL checking using LDAP, then you need to configure a CRLDP AAA object

    start -> Client Cert Inspection -> CRLDP Auth -> Allow