Forum Discussion
Maynor_Ovalle
Nov 07, 2013Nimbostratus
Got an aswer from F5. As of 11.4.1 Global Catalog is not supported yet for authentication. Supported are ldap, ldaps, regular AD and Kerberos.
- dirtycacheJan 03, 2017Nimbostratus
Circling back to this as the post/question came up in a Google search -
You can utilize the global catalog by configuring it as an LDAP AAA server object, with the dependent pool members using port 3268/tcp.
That said, you won't have password change functionality with an LDAP AAA object like you would with AD due to them each using a different agent; the LDAP agent does not support this feature while the AD agent does, including against RODCs.