Forum Discussion
Transparent User Identification (IFMAP)
Hello! I'm trying to use F5 DCAgent and IFMAP server for transparent user indentification. I've successfully installed DCAgent on a server and deployed an IFMAP iapp on BIGIP. I've also configured BIGIP system in transparent forward proxy mode using the following document: http://support.f5.com/kb/en-us/products/big-ip_apm/manuals/product/apm-secure-web-gateway-implementations-11-5-0/5.htmlconceptid
The problem is that sometimes transparent identification is working and sometimes it's not. I've found a way to see what information DCAgent recevies from a domain controller, but how can i make sure that this information reaches BIGIP? Is there any way to see what mappings ( - ) the BIGIP system has?
3 Replies
F5 Support gave me an advice on how to debug ifmap server: You can further enable debug by editing /var/swg/omapd/ompad.conf change debug_level to ffff as below:
ffffOnce the DCagent identifies a user logged in, I see the /var/log/omapd with the logs for inserting the user to the DB by the DCAgent.
Now I can see that users are mapped to the wrong ip address.
- Now I've noticed that I only have this issue when I use static ip address assignment, when I use DHCP everything works fine.
- The problem was reproduced only when ip addresses on end machines was configured using static configuration (not DHCP). When we use DHCP everything works fine.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com