Forum Discussion

Martijn_van_de1's avatar
Mar 22, 2017

Domain logon slow when using "Allow-only-in-enterprise-lan"

Hi all,

 

One of our customers is using the "Allow-only-in-enterprise-lan" option in his BIG-IP Edge Client configuration.

 

When the user is connected to the enterprise LAN and performs a Windows Domain logon, it takes a long time. Almost 2 minutes and this is not acceptable. Because no traffic is allowed, the Domain Controllers cannot be reach until the BIG-IP Edge Client discovers it is on the enterprise LAN.

 

In version 13.0 of the BIG-IP software, it is possible to configure a Exclusion List on the BIG-IP Edge Client configuration in which you can add IP-addresses for the Domain Controllers and other systems which must be reachable right away. This speeds up the Domain Logon proces.

 

But our customer is at 12.1.2 Build 0.0.249. Customer is not very keen on upgrading his production environment to versie 13.0 just for this feature.

 

Is there a work around in version 12.1.2? Maybe a file on the system in which you can configure some kind of Exclusion List? Or will this feature be available in a future versions of 12.1? Or is the only option to upgrade to version 13.0?

 

Martijn.

 

1 Reply

  • kunjan's avatar
    kunjan
    Icon for Nimbostratus rankNimbostratus

    This exclusion feature only available in v13.0 and won't be available to older versions. Guess there is no work around.