28-May-2021 01:37
Dear devcentral,
I'm currently faced with an issue where an administrative user is being locked out because multiple attempts are failing.
These attempts and connections, are routed through an F5 virtual server, which has Automap enabled, so the requests appear to be coming from the F5 itself.
Is it possible, somehow, to intercept the username of this request and the client IP, in order to ascertain where the lockout attempts are coming from?
Thanks a lot in advance
01-Jun-2021 08:36
If you can stop the SNAT Auto Map and configure your network and routing to return LDAP replies back to the F5 device ?
https://support.f5.com/csp/article/K14225515
You can also review this post:
https://devcentral.f5.com/s/question/0D51T00007BG1Pc/insert-client-ip-address-on-ldap-vs