Forum Discussion

Skuba_85554's avatar
Skuba_85554
Icon for Nimbostratus rankNimbostratus
Mar 10, 2009

strange web site behaviour using big ip

we have a web server with 2 network interfaces. one connects to our back end network, and the other connects to the external ltm network. the web site currently uses ntlm authentication and if we access it from the back end network it asks us to authenticate once and then it works fine. however, if we go to the web site via the external ltm interface, i.e. through the big ip system, the user is prompted to authenticate over and over again whilst each object on the page is loaded

 

 

has anyone experienced this before?!

 

 

thanks
  • hoolio's avatar
    hoolio
    Icon for Cirrostratus rankCirrostratus
    Hi Skuba,

     

     

    There are some issues with NTLM authentication through a VS (mostly using OneConnect, though some not). This is the most recent post I've seen on the issue:

     

     

    ntlm and oneconnect

     

    http://devcentral.f5.com/Default.aspx?tabid=53&forumid=5&tpage=1&view=topic&postid=27995 (Click here)

     

     

    I'm not sure what the latest thoughts are on this though, so I'd suggest opening a case with F5 Support on the issue. Please reply here once you get more info so others can reference it.

     

     

    Thanks,

     

    Aaron
  • hi hoolio

     

     

    i've raised a change request to remove oneconnect from this particular virtual server. i'll let you know how it goes
  • Hi

     

     

    OneConnect does affect NTLM. Disabling OneConnect usually results in the problem going away.

     

     

    Nathan