Forum Discussion

tmos_92245's avatar
tmos_92245
Icon for Nimbostratus rankNimbostratus
Aug 08, 2015

Questions on the use of saml resources in f5 apm without webtop

Hello ! I 've configured a F5 SP (in SP initiated setup) along with an external idp. SAML authentication works fine. Now I need to deal with the applications. That is the field where my problems are:

 

1) How do you exactly define saml enabled web applications as resources in apm policy having a SP initiated setup ( with a F5 being the saml SP) ? Saml resources only seem to require a name, but where does this name exactly relate to ? How to make these resources single sign on ?

 

2) How to provide transparent access to a lot of saml aware backend applications. Can the F5 serve as an entry point for saml authentication providing transparent access to a lot of saml aware applications without all the apm portal/rewriting/ and client component stuff ? Because of the sheer number of application servers i like to avoid 'rewriting problems'. Is a 'LTM style possible' here ?

 

Cheers !