Has anyone implemented a custom RBM or AAA Policy where the Datapower queries for available DNS Servers rather than using a LBG with a static list?
I know unix/linux have a command 'dig' which can accomplish this, but was wondering if anyone here has ever implemented it using Datapower?
let me know your thoughts and thank you in advance,
Pinned topic Has anyone used Datapower to Query DNS for available Name Servers?
Answered question This question has been answered.
Unanswered question This question has not been answered yet.
Updated on 2013-01-26T22:00:04Z at 2013-01-26T22:00:04Z by Doyler86
Re: Has anyone used Datapower to Query DNS for available Name Servers?2013-01-09T01:53:41ZThis is the accepted answer. This is the accepted answer.
- msiebler 2700005RPQ
we are a large Datapower shop. We are also a huge Active Directory shop as well. Right now we are utilizing a load balancer group of Active Directory Servers for AAA solutions. Our Active Direcory Servers may change throughout the year causing our LBG to be outdated and potentially impactful.
Microsoft has added to the LDAP spec the process and standards for utilizing SRV records, which provides a way to query a particular domain for available Active Directory Servers, thus always receiving an Active Name Server.
I know Datapower doesn't directly support querying for SRV records at the moment, but I was was wondering if utilizing XSLT in the AAA Policy if we would be able to do this. I know Linux/Unix have a workaround utilizing the 'dig' command that I mentioned in the original question.
If there was a way to do this, this could prevent impactful situations as well as save countless hours for having resources update these LBG's.
hope that helps,
Trey 120000BTRN225 Posts
Re: Has anyone used Datapower to Query DNS for available Name Servers?2013-01-09T02:15:00ZThis is the accepted answer. This is the accepted answer.
- Doyler86 2700040UFD
I only see this being an external method, but some sharper folks may have a better idea.
Re: Has anyone used Datapower to Query DNS for available Name Servers?2013-01-26T22:00:04ZThis is the accepted answer. This is the accepted answer.
- Trey 120000BTRN
What do you think about utilizing an Identity server in between the appliance and the Active Directory Servers? Do you think this would help relieve me of the issue I mentioned above?