Forum Discussion

Geoff_Gudgeon_3's avatar
Geoff_Gudgeon_3
Icon for Nimbostratus rankNimbostratus
Sep 02, 2018

Single Virtual Server and LDAP-LDAPS connections

Hi,

 

I am curious about the Single Virtual Server LDAP and LDAPS iRule that has been shared on DevCentral(https://devcentral.f5.com/Wiki/iRules.Single-Virtual-Server-for-LDAP-and-LDAPS.ashx)

 

Could anyone share the Virtual Server config for use with this rule and any pools are well.

 

I understand that the Virtual Server would have a listening port of 0 but how do you setup the pool(s) to listen on all the ports required? I'm not sure how to have a pool that can accept the multiple port connections and then also monitor these for health etc..

 

Has anyone implemented this at all ?

 

Thanks in advance for any help the community can give.

 

1 Reply

  • Set your pool members to port 0 (or any on web GUI), then any port used by the client to connect to the virtual server will be used by the F5 on the serverside to the pool member.

     

    For monitoring you will need to create monitors and set the alias port to the correct port for the monitor to use. This overrides the port set on the pool member, when you set the port to any then you the F5 will prevent you from assigning a monitor without the alias port set as it doesn't know which port to use.

     

    For example create a LDAPS monitor and set the alias port to 636 (if that is the port you want to monitor the pool member on) and assign to the pool or pool member.