Forum Discussion

refra_151287's avatar
Jan 03, 2016

Loadbalance based on the user AD group

we do loadbalance on AD servers, but also we need to direct the traffic dome users to specific AD server based on the AD group. any idea how can we deploy it,

 

Thanks In Advance

 

3 Replies

  • Do you have APM license? This can be done with APM's AD group membership query.

     

    • refra_151287's avatar
      refra_151287
      Icon for Cirrus rankCirrus
      No, just LTM, can it be done by iRule? from packet capture i can see that the field we should monitor is (ldap.baseObject == "DC=example,DC=com") is that right?
    • Rao_88575's avatar
      Rao_88575
      Icon for Nimbostratus rankNimbostratus
      It should be possible if the payload contains the group attribute. Here is the example with payload scan to get you started : https://devcentral.f5.com/s/articles/ldap-proxy