Forum Discussion

Kaynewbie_30762's avatar
Kaynewbie_30762
Icon for Nimbostratus rankNimbostratus
Jan 29, 2017

F5 APM Logon

Hi,

 

Using F5 APM, can i deploy F5 APM only as SSO logon page ? After user have logon, user can access web app directly. This deployment is for internal user who want to access internal web app but F5 APM is positioned on DMZ. The goal is user can stil use SSO, but traffic to access internal web app not through DMZ (proxied by APM).

 

Thanks

 

2 Replies

  • could you draw up a figure?

     

    if you want the APM to do SSO against a web application but without the APM then that won't work. you do need some communication.

     

  • One way of having F5 present a logon page for an application, but not proxy the traffic, would be to use the F5 APM as a SAML identity provider (IdP). This would require the installation of either an agent on the application server, or modifications to the application to support operating as a SAML service provider (SP).