Forum Discussion

Xterminator89's avatar
Xterminator89
Icon for Altocumulus rankAltocumulus
May 28, 2021

LDAPS account interception through Virtual Server - Is it possible

Dear devcentral,

 

I'm currently faced with an issue where an administrative user is being locked out because multiple attempts are failing.

These attempts and connections, are routed through an F5 virtual server, which has Automap enabled, so the requests appear to be coming from the F5 itself.

 

Is it possible, somehow, to intercept the username of this request and the client IP, in order to ascertain where the lockout attempts are coming from?

 

Thanks a lot in advance

1 Reply

  • If you can stop the SNAT Auto Map and configure your network and routing to return LDAP replies back to the F5 device ?

     

    https://support.f5.com/csp/article/K14225515

     

     

     

     

    You can also review this post:

     

     

    https://devcentral.f5.com/s/question/0D51T00007BG1Pc/insert-client-ip-address-on-ldap-vs