Forum Discussion

AhmedGalal219_3's avatar
AhmedGalal219_3
Icon for Nimbostratus rankNimbostratus
Dec 21, 2017

create APM using AD login auth

Hi all am trying to create a APM for http server that authenticate from AD . what i want that if user is a domain user he can access the web application without asking for credential. i already readed meny things about Kerbros SSO with AD actually this link has almoust every thing about it but in add a usesr to domain for checking kerbros ticket

 

actually i dont know what does he mean about the hostname of the virtual in this example does it mean BIG-IP appliance hostname or what ( example at the link i coudnt type it cuz Devcentral marked commands as a spam ) Joining a AD in this article LINK :

 

link text

 

many thanks every one

 

1 Reply

  • you mean from here?

    Create a surrogate user in the domain. In this example, the hostname of the virtual server on the BIG-IP system is testbed.lab.companynet and the user name is john. setspn -U -A HTTP/testbed.lab.companynet john

    that would be the hostname in DNS which points to the virtual server which has the APM access profile with the Kerberos authentication.