Forum Discussion

Danmau_178060's avatar
Danmau_178060
Icon for Nimbostratus rankNimbostratus
Dec 15, 2014

SSO and iphone applications

Hi, We have newly iphone application that we would like to allow our users access to. However, the iphone application requires Active Directory authenticaton and we have a concerned about security. We are already using F5 for web access application but never used with iphone application. Is there a way we can avoid opening LDAP ports and leverage our F5 appliances. Not sure if the SSO will be able to support vendor's Iphone application and transmit AD credentials over to the application? Can you let me know if this is feasible?

 

4 Replies

  • Hi,

     

    We need to know if you are talking about Kerberos, NTLM auth ... on client side. You can use APM in order to make Basic, NTLM pre-auth (without opening any AD port or AD server to the public place) and use SSO to the back server (apps server).

     

  • That would be NTLM. However the application on the phone device is not a Web interface it is developped application that uses NTLM for authentication. Do you think this could still work.

     

  • Of course. You can configure APM for NTLM front end authentication, APM will check auth with AD, and when front end authentication is validated, APM will make NTLM (v1 or V2) SSO to the back end.

     

    In this scenario, APM must be part of the domain (there is a "Join Domain" feature into APM).

     

    Certificat and SSK keys will be handled by APM as well.

     

  • Great day everyone!

     

    Id like to share the perfect online app, ipa library. you may install the app at this this website for free and maybe this app will help for your iOs like .exe for windows and .ipa is for iphone’s.