Manual :
BIG-IP Access Policy Manager: Implementations
Applies To:
Show VersionsBIG-IP APM
- 14.0.1, 14.0.0
Original Publication Date: 08/10/2018
- Configuring Web Access Management
-
Protecting Internal Resources Per-Request
-
Overview: Protecting internal resources on a per-request basis
- Creating a per-request policy
- Configuring policies to branch by local database user group
- Categorizing URLs using custom categories in a per-request policy
- Configuring a per-request policy to control access to applications
- Configuring a per-request policy to branch by group or class
- Adding a per-request policy to the virtual server
- Example policy: URL filter per user group
- Example policy: Access control by date, time, and user group
- Example policy: User-defined category-specific access control
- Example policy: Application lookup and filter
-
Overview: Protecting internal resources on a per-request basis
-
LTM SSL Forward Proxy and Per-Request Policies
-
Overview: Adding a per-request policy to LTM SSL forward proxy
- Creating an access profile for LTM-APM
-
Creating a per-request policy
- Processing SSL traffic in a per-request policy
- Configuring policies to branch by local database user group
- Categorizing URLs using custom categories in a per-request policy
- Configuring a per-request policy to control access to applications
- Configuring a per-request policy to branch by group or class
- Creating a DNS resolver
- Updating the virtual server for SSL forward proxy
- Example policy: SSL forward proxy bypass
- Overview: SSL forward proxy client and server authentication
- Task summary for SSL Forward Proxy on a single BIG-IP system
- Implementation result
-
Overview: Adding a per-request policy to LTM SSL forward proxy
- Using Custom URL Categories and Filters
- Configuring APM for Application Filtering
- Configuring Dynamic ACLs
- Configuring Routing for Access Policies
-
Synchronizing Access Policies
-
Overview: Syncing access policies with a Sync-Only device group
- Understanding policy sync device group setup for Active-Standby pairs
- Understanding policy sync for Active-Standby pairs
- Before you configure device trust
- Establishing device trust
- Configuring a Sync-Only device group for access policy sync
- Synchronizing a policy across devices initially
- Configuring static resources with policy sync
- Configuring dynamic resources with policy sync
- Resolving policy sync conflicts
- About ignoring errors due to the Variable Assign agent
- Implementation result
-
Overview: Syncing access policies with a Sync-Only device group
- Load Balancing Access Policy Manager
-
Using APM as a Gateway for RDP Clients
-
Overview: Configuring APM as a gateway for Microsoft RDP clients
- About supported Microsoft RDP clients
- About Microsoft RDP client login to APM
- Configuring an access profile for resource authorization
- Verifying log settings for the access profile
- Configuring an access policy for resource authorization
- Creating an access profile for RDP client authorization
- Verifying log settings for the access profile
- Configuring an access policy for an RDP client
- Configuring a machine account
- Creating an NTLM Auth configuration
- Maintaining a machine account
- Configuring a VDI profile
- Creating a connectivity profile
- Creating a custom Client SSL profile
- Creating a virtual server for SSL traffic
- Implementation result
- Overview: Processing RDP traffic on a device configured for explicit forward proxy
-
Overview: Configuring APM as a gateway for Microsoft RDP clients
- Maintaining OPSWAT Libraries with a Sync-Failover Device Group
- Maintaining OPSWAT Libraries with a Sync-Only Device Group
- Adding Hosted Content to Access Policy Manager
- Editing Hosted Content with Access Policy Manager
-
Hosting a BIG-IP Edge Client Download with Access Policy Manager
- About hosting a BIG-IP Edge Client file on Access Policy Manager
-
Task summary for adding the BIG-IP Edge Client for Mac file to APM
- Configuring a connectivity profile for Edge Client for Mac
- Downloading the ZIP file for Edge Client for Mac
- Uploading BIG-IP Edge Client to hosted content on Access Policy Manager
- Associating hosted content with access profiles
- Creating a webtop link for the client installer
- Adding a webtop, links, and sections to an access policy
- Implementation result
- Hosting Files with Portal Access on Access Policy Manager
- Managing Disk Space for Hosted Content
- Importing and Exporting Access Profiles
- Logging and Reporting
- Returning HTTP Status 503 to Web Applications
- Resources and Documentation
- Legal Notices