Forum Discussion

smiley_dba_1116's avatar
smiley_dba_1116
Icon for Nimbostratus rankNimbostratus
Mar 22, 2016

F5 APM - Kerberos Auth Question

We are in the midst of moving our authentication for one of our sites to Kerberos. Started configuring Kerb and got the keytab from the server guys. the problem is that I through keytab into kerb auth profile, and now its not sending auth traffic TO the kerb server. Am I missing something?

 

 

I know Im probably doing this wrong, but any help would be appreciated. I tried following the AskF5 doc, but got lost. Thank you.

 

RGW

 

1 Reply

  • Josiah_39459's avatar
    Josiah_39459
    Historic F5 Account

    Kerberos auth is SPNEGO. It will not query your Kerberos server. The client must be domain joined and the client gets a ticket from the domain server directly then sends that ticket to the big f5 which verifies it against the keytab.

     

    Maybe you are looking for Kerberos SSO?