Forum Discussion
Transparent User Identification (IFMAP)
Hello! I'm trying to use F5 DCAgent and IFMAP server for transparent user indentification. I've successfully installed DCAgent on a server and deployed an IFMAP iapp on BIGIP. I've also configured BIGIP system in transparent forward proxy mode using the following document: http://support.f5.com/kb/en-us/products/big-ip_apm/manuals/product/apm-secure-web-gateway-implementations-11-5-0/5.htmlconceptid
The problem is that sometimes transparent identification is working and sometimes it's not. I've found a way to see what information DCAgent recevies from a domain controller, but how can i make sure that this information reaches BIGIP? Is there any way to see what mappings ( - ) the BIGIP system has?
3 Replies
F5 Support gave me an advice on how to debug ifmap server: You can further enable debug by editing /var/swg/omapd/ompad.conf change debug_level to ffff as below:
ffffOnce the DCagent identifies a user logged in, I see the /var/log/omapd with the logs for inserting the user to the DB by the DCAgent.
Now I can see that users are mapped to the wrong ip address.
- Now I've noticed that I only have this issue when I use static ip address assignment, when I use DHCP everything works fine.
- The problem was reproduced only when ip addresses on end machines was configured using static configuration (not DHCP). When we use DHCP everything works fine.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com