RobertJuric
Jun 18, 2020Nimbostratus
HTTP::Cookie iRule Empty after Access Policy
I have a virtual server with an access policy for Kerberos authentication. After Kerberos authenticates, we perform an AD query and then insert a cookie with an AD attribute for the back-end server.
We recently needed to add a fail-back authentication method, so if Kerberos fails we show a login page with RSA authentication. All of that works, but when the cookie is created after a successful RSA authentication the variable in the cookie is empty. The cookie is created, but is always empty unless Kerberos is successful.
when HTTP_RESPONSE {
log local0. "HTTP RESPONSE"
HTTP::cookie insert name "REMOTE_USER" value "[ACCESS::session data get "session.ad./Common/testapp_act_active_directory_query_ag.attr.sAMAccountName"]" path "/"
}