Forum Discussion

Mike_Finney_119's avatar
Mike_Finney_119
Icon for Nimbostratus rankNimbostratus
Oct 04, 2013

OTP when using an iOS device and the Edge Client?

I am still working on getting our APM set up with one time passwords using this excellent article: https://devcentral.f5.com/articles/one-time-passwords-via-an-sms-gateway-with-big-ip-access-policy-manager but have just hit a big stumbling block when I thought things were going well.

 

My boss brings his ipad up to me and asks how he can do the one time password login when he isn't getting prompted. I asked him to show me and I see that when he brings up the edge client, he of course does not get the login page I set up in the APM to put in his domain credentials, and so the system will not query for his AD account and mobile number to send the OTP to via SMS. If he opens Safari and goes to the normal page, he does get prompted and will receive the OTP over SMS, but then the Network Connection won't show up on the webtop. I thought the Edge Client would come up if detected, but that doesn't seem to work.

 

It seems that Safari is not supported for all functions. I tried different combinations of webtops and network access resources, they either don't show up or I get a message about the wrong webtop or webtop not needed. I was able to get some webtop links to show up, but they don't work right and network access is really the key we need to make work.

 

Everything is fine for the Windows machines which are 90+% of the access usage, but I am not at all sure how to handle this scenario. I guess I could move a client OS check to the front and send iOS devices down a different path, but I would really like to get the OTP system working there as well if at all possible.

 

Has anyone done this or have any ideas how to make OTP work with an ipad or with the Edge Client? It is on the latest 1.0.6 version of the client.

 

Thanks!!

 

Mike

 

2 Replies

  • Hi,

     

    Have you tried using the "web logon" feature of the Edge Client? That would bring up the browser for the login flow, then turn back to the edge client once successfully authenticated.

     

  • Hi Daniel,

     

    I did actually find that feature and had enabled it, but couldn't get my client device to bring up the page. Finally I ended up rebooting the device at one point from frustration and then it started working to bring up the browser pages to complete the login. Thanks for answering!