Тёмный

Enable Azure AD Conditional Access + Intune with APM SSL VPN 

Matthieu Dierick, F5
Подписаться 1,1 тыс.
Просмотров 2,5 тыс.
50% 1

Опубликовано:

 

3 окт 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 7   
@ahmadamro8376
@ahmadamro8376 Год назад
in this scenario no configuration will done on APM itself ? or you need to verify the user certificate before allow access to APM resources
@danielseyoum9734
@danielseyoum9734 Год назад
Thanks for the video, it cleared up a lot of confusion I had. However, the BIG-IP APM configuration part is missing. Can you briefly go over the steps?
@MatthieuDierickF5
@MatthieuDierickF5 Год назад
Hi Daniel, it is simple :) It a classic Network Access policy with a certificate authentication (client certificate). You must import the Azure CA into BIGIP and add a client cert auth on your VS (or in APM VPE) to control the certificate issued by Azure CA.
@danielseyoum9734
@danielseyoum9734 Год назад
@@MatthieuDierickF5 Thanks for the timely response. I will setup accordingly and let you know of the outcome.
@rondyni
@rondyni 3 года назад
Can you help me with this doubt? I made the integration of APM with Azure and in the environment which does not go through Azure the authentications made in AD and are by network account. When I integrated with Azure I'm having authentication problems because in the Azure environment the accounts are made by (email account) and when it reads it gets lost. Can I change this in apm so that Ad understands that the request is being made by email account and not by network account?
@MatthieuDierickF5
@MatthieuDierickF5 3 года назад
on APM, with a logon page, you can use the option split domain to extract the domain from the UPN name@domain.com This will set the username and the domain automatically
@ahmadamro8376
@ahmadamro8376 Год назад
you can extract the username from email using variable assign ; session.logon.last.username return [lindex [split [mcget {session.saml.last.identity}] "@"] 0]
Далее
Azure integration with F5 APM in v16.0
10:51
Просмотров 5 тыс.
V16 из БЕНЗОПИЛ - ПЕРВЫЙ ЗАПУСК
13:57
НОВАЯ "БУХАНКА" 2024. ФИНАЛ
1:39:04
Просмотров 432 тыс.
Azure AD IDP chain with F5 APM
10:14
Просмотров 2,8 тыс.
Microsoft Intune From Zero to Hero
39:08
Просмотров 220 тыс.
Kerberos Authentication Explained | A deep dive
16:52
Просмотров 346 тыс.
Postgres just got even faster
26:42
Просмотров 32 тыс.
V16 из БЕНЗОПИЛ - ПЕРВЫЙ ЗАПУСК
13:57