Forum Discussion
Kerberos with APM is prompting for security login and sso login everytime.
Q: The client application is pointing to DC-1 EMS pair. When Both the EMS servers on DC-1 are unavailable (both host 1 and host 2 are down ) then we would like to do a DNS switch / ip switch using F5 to EMS pair in DC-2 is this possible ?
A: Yes it's possible with the GTM/LTM setup.
Q:What DNS infrastructure needs to be used for with in the same data center and what needs to be used for the shift between DC-1 and DC-2.
A: I in my mind it's recommended that you have an LTM in each datacenter. However, the GTM can be located in different areas and they would be authoritative of domain you can use against the virtual addresses within DC-1 and DC-2. All systems to be routable with each other.
I hope this helps
Bhattman
Angel,
It talks about 4k keys in the SOL you reference:
"Note: F5 Product Development has not yet completed performance testing for the impact of 4096-bit keys. However, they have determined the theoretical impact could be as much as a 17x performance decrease over 1024-bit keys."
You may wish to raise a support case to see if there is any update on this but i see the SOL was last modified this month so there may not be any more info.
N
- Angel_Lopez_116Apr 08, 2015
Altostratus
Yes, I'll assume a factor of 1/17 as said in this SOL. Thanks.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com