Download as pdf or txt
Download as pdf or txt
You are on page 1of 9

Workspot Configuration

Guide for F5 BIG-IP Access


Policy Manager

Workspot, Inc.
11/2/2015
F5 BIG-IP and Workspot Overview

The F5 BIG-IP Access Policy Manager (APM) provides secure and scalable connectivity for your network.
Once the F5 BIG-IP is installed, Workspot can be quickly and easily implemented as no additional on-
premise hardware or software required. The Workspot client connects to the F5 BIG-IP APM and access
internal corporate resources using Mobile AppTunnels feature.

For more information on the F5 BIG-IP APM see:


http://www.f5.com/products/big-ip/big-ip-access-policy-manager/overview/

The Workspot client runs on laptops, desktops, iOS and Android devices. Workspot Control is the
corresponding, cloud-based administration console used to manage configuration and policies for the
environment.

For more information on Workspot, see: http://www.workspot.com

The information and screens in this guide are based on the following:
 F5 BIG-IP Virtual Edition
 Version: 11.6.0 (Build 0.0.401)

Prerequisites and Configuration Notes

The following are general prerequisites for this guide:


 The F5 BIG-IP should be installed and configured for network connectivity and basic operations,
routing, DNS and including an AAA Server Group with an authentication server such as Microsoft
Active Directory (AD).
 Administrator login for the F5 BIG-IP.
 Hostname or IP address for an internal web page if the Portal Access Setup Wizard is used for
the setup.
 Hostnames or IP addresses for internal web apps, CIFS file shares and Remote Desktop Services
(RDS) servers.

Configuring the BIG-IP APM for Workspot involves the following steps:

 Create an AAA Server (if needed)


 Using the Portal Access Setup Wizard
 Enable the Application Tunnel
 Testing the configuration with a browser

This document contains Workspot, Inc. proprietary information and is not to be disclosed to unauthorized persons.
Version 2.1 pg. 1 of 8
F5 BIG-IP APM Configuration for Workspot

The following steps outline the basic configuration of the BIG-IP APM to support Workspot. Sign into the
administration portal of F5 BIG-IP and configure a webtop as follows.

1. From Main > Access Policy > AAA Server select and verify the AAA server used for authentication,
for example the Active Directory type as shown below, or create a new AAA Server if needed.

2. If an existing virtual server is already configured and can be reused for Workspot, select that server
from Main > Local Traffic > Virtual Servers and go to enable the Application Tunnel (Step 9).
Otherwise, go to Main > Wizards > Device Wizards and select Portal Access Setup Wizard, then
click Next.

This document contains Workspot, Inc. proprietary information and is not to be disclosed to unauthorized persons.
Version 2.1 pg. 2 of 8
3. Enter the Policy Name Workspot, leave the caption also as Workspot, then uncheck the Enable
Antivirus Check in Access Policy, then click Next.

4. Select the Use Existing authentication and choose an existing AAA server from the dropdown, then
click Next.

This document contains Workspot, Inc. proprietary information and is not to be disclosed to unauthorized persons.
Version 2.1 pg. 3 of 8
5. Select Application Custom and enter the Hostname or IP address for an internal web page, for
example http://10.20.20.20/. This page will only be used to test the portal. Uncheck the Configure
SSO option and then click Next.

6. Enter the Virtual Server IP Address and click Next.

This document contains Workspot, Inc. proprietary information and is not to be disclosed to unauthorized persons.
Version 2.1 pg. 4 of 8
7. Review the configuration and then click Next.

This document contains Workspot, Inc. proprietary information and is not to be disclosed to unauthorized persons.
Version 2.1 pg. 5 of 8
8. On the summary screen click on the Virtual Server Workspot_vs. Or if a previously configured virtual
server is to be used for Workspot, select that server from Main > Local Traffic > Virtual Servers.

This document contains Workspot, Inc. proprietary information and is not to be disclosed to unauthorized persons.
Version 2.1 pg. 6 of 8
9. Under the virtual server Access Policy, select the Application Tunnels (Java & Per App VPN) then
click Update.

This document contains Workspot, Inc. proprietary information and is not to be disclosed to unauthorized persons.
Version 2.1 pg. 7 of 8
Testing the configuration

To test the configuration, using a standard browser, go to the virtual server address, e.g.
https://bigip.mycompany.com/. Then enter the appropriate credentials and click Logon.

The internal web page from the website http://10.20.20.20/ (configured in step #5) will be displayed.

This document contains Workspot, Inc. proprietary information and is not to be disclosed to unauthorized persons.
Version 2.1 pg. 8 of 8

You might also like