Forum Discussion
7 Replies
Sort By
- Samir_Jha_52506Noctilucent
What issue you are seeing? Do you manage User Role on LB itself of third party device(i.e LDAP, Radius, etc)?
- GVR_Dinesh_1748Nimbostratus
user accounts create in LB and authentication group map to the user profile in active directory. So it is like dual authentication.
- Samir_Jha_52506Noctilucent
You don't need to create user in LB device only declare role like below and call role in LDAP.
Example
BigIPOperatorGroup attribute memberOF=CN=BigIPOperatorGroup,OU=BIP,DC=dean,DC=local console tmsh line-order 10 role operator user-partition B
Go through link for more information.
- GVR_Dinesh_1748Nimbostratus
However we already setup the user accounts creation in F5 with mapping roles and map their role groups in AD. Right now is there any bug issue for the roles has been changed.
Is authentication via TACACs or local (offline)?