Forum Discussion

Robert_James_10's avatar
Robert_James_10
Icon for Nimbostratus rankNimbostratus
Jul 03, 2012

Using APM with Lync as Reverse Proxy

Hi we have deployed two LTM's for Lync (to start) and I've used the iAPP template. We are running 11.2 and I wanted to know if anyone has any insight on using the APM module as the reverse proxy and auth service?

 

 

 

 

 

 

 

 

 

Thanks in advance,

 

 

 

 

 

Bob James

 

 

  • mikeshimkus_111's avatar
    mikeshimkus_111
    Historic F5 Account
    hi Bob, are you using the version of the template that shipped with BIG-IP? If so, I recommend downloading the updated version here:

     

    https://devcentral.f5.com/wiki/iApp.Microsoft-Lync-Server-2010-Updated-iApp.ashx

     

     

    At this time, APM doesn't support some of the traffic that passes through the reverse proxy, specifically Lync Mobility and the Lync client address book lookup. You can use APM to secure access to the simple URLs and that's about it. I've done this in test but it hasn't been added to the solution yet.

     

    thanks

     

    Michael
  • Yes I am using the template (latest) is there anywhere within F5 I can confirm it will not work with Mobility and Address Book lookup? So what did you have to do; TMG/UG?

     

     

    Thanks in advance,

     

     

    Bob James
  • mikeshimkus_111's avatar
    mikeshimkus_111
    Historic F5 Account
    The iApp configures a VIP for reverse proxy to forward that traffic to the internal reverse proxy VIP, which then forwards to director or front end servers. It creates an iRule that only allows traffic to the simple URLs, mobility URL, and web services FQDN. So while it's not doing pre-authentication, it is limiting access to only those resources you are publishing. There is not need to use TMG or UAG.