Configure LDAPS behind a F5 LTM


we using cloud application allows ad authentication; application allows 1 ldaps server. create fail over/load balance configuration application encountering issues. have f5 using load balance. created csr f5 , generated ssl rapid ssl. fqdn of ssl references vip , not 2 dcs fqdn. i imported ssl dc in ntds/personal certificate store when trying connect verify ssl ldp.exe, error , following error in event viewer: ssl server credential's certificate not have private key information property attached it. eventid:36869. have private key cannot import cert store. have tried run command certutil -repairstore "cert sn" error object not found. @ point, want dcs working through ldaps on port 636. can please lead me in right direction?

thank you

hi,

in case f5 ssl endpoint, external ldap client not see certifcates on dcs, see certificate on f5.

you must import certificate got rapid ssl on f5.

you can configure f5 act ssl endpoint or forward traffic dcs. recommend configuration ssl endpoint.

might information f5 f5 configuration http://support.f5.com/kb/en-us/solutions/public/11000/100/sol11199.html?sr=32865133 and http://support.f5.com/kb/en-us/products/big-ip_ltm/manuals/product/ltm-concepts-11-1-0/ltm_ssl_profiles.html?sr=32865189.

regards,

lutz



Windows Server  >  Directory Services



Comments

Popular posts from this blog

WIMMount (HSM) causing cluster storage to go redirected (2012r2 DC)

Failed to delete the test record dcdiag-test-record in zone test.com

Azure MFA with Azure AD and RDS