Forum Discussion

Donald_J_Ross's avatar
Jul 23, 2019
Solved

Active Directory authentication for management GUI

For some reason as soon as DNS if configured on the F5 LTM 13.1.1.4 remote authentication stops working. When DNS is configured the F5 seems to be querying the whole AD estate, over 50 servers. Has anyone seen this before ?

 

  • Hi Donamato,

     

    That certainly does seem odd. It also sounds like it might be possible that LDAP referrals are causing the issue. It may be worth trying to disable LDAP referrals entirely and then test again. If you want to give that a try please see the article linked below.

     

    K17311: Globally disable use of LDAP referrals for the BIG-IP system (10.x - 14.0.0)

    https://support.f5.com/csp/article/K17311

     

    -Nathan F

4 Replies

  • Hi Donamato,

     

    That certainly does seem odd. It also sounds like it might be possible that LDAP referrals are causing the issue. It may be worth trying to disable LDAP referrals entirely and then test again. If you want to give that a try please see the article linked below.

     

    K17311: Globally disable use of LDAP referrals for the BIG-IP system (10.x - 14.0.0)

    https://support.f5.com/csp/article/K17311

     

    -Nathan F

  • if that isn't it then something that comes to mind is how your configured your AD server(s). is there anywhere you use the domain and not a specific server?