Sessions By Access Profiles Test

BIG-IP APM lets you design access policies for authentication and authorization, and, as an option, endpoint security checks, enforcing user compliance with corporate policies and industry regulations. You can define one access profile for all connections coming from any device, or you can create multiple access profiles for different access methods from various devices. The access profile contains:

  • Access policy timeout and concurrent user settings
  • Accepted language and default language settings
  • Single Sign-On information and domain cookie information for the session
  • Exchange profile for Microsoft Exchange service settings
  • List of access controls

Owing to the benefits that the access profiles offer, administrators widely use them to easily establish the sessions on the BIG-IP APM. If the sessions established using the access profiles suddenly logged out due to errors, it will affect the user experience and productivity. To ensure better user experience with the sessions established using the access profiles, it is important for administrators to track the sessions at regular intervals. This can be easily achieved using the Session By Access Profile test!

This test auto-discovers the session profiles on the target APM and reveals the statistics related to the sessions established using each access profile. These statistics help administrators to identify the access profile that is prone to errors and rapidly take necessary actions to eliminate the issues.

Target of the test : A Big-IP Access Policy Manager (APM)

Agent deploying the test : An external agent

Outputs of the test : One set of results for each access profile defined the target APM.

Configurable parameters for the test

Test Period

How often should the test be executed.

Host

The IP address of the host that is being monitored.

Timeout

Specify the duration (in seconds) beyond which this test should time out in this text box. The default is 10 seconds.

Detailed Diagnosis

To make diagnosis more efficient and accurate, the eG Enterprise embeds an optional detailed diagnostic capability. With this capability, the eG agents can be configured to run detailed, more elaborate tests as and when specific problems are detected. To enable the detailed diagnosis capability of this test for a particular server, choose the On option. To disable the capability, click on the Off option.

The option to selectively enable/disable the detailed diagnosis capability will be available only if the following conditions are fulfilled:

  • The eG manager license should allow the detailed diagnosis capability
  • Both the normal and abnormal frequencies configured for the detailed diagnosis measures should not be 0.
Measurements made by the test
Measurements Description Measurement Unit Interpretation

Current established sessions

Indicates the number of sessions that are currently established using this access profile.

Number

 

Current active sessions

Indicates the number of sessions, established using this access profile, that are active.

Number

 

Current pending sessions

Indicates the number of sessions that are currently pending.

Number

 

Sessions terminated by user logouts

Indicates the number of sessions terminated due to user logouts.

Number

 

Sessions terminated by admin

Indicates the number of sessions terminated by the administrator.

Number

 

Sessions terminated by error

Indicates the number of sessions terminated due to the occurrence of errors.

Number

 

Sessions allowed by ACL

Indicates the maximum number of sessions allowed by the access control policies defined in this access profile.

Number

 

Sessions denied by ACL

Indicates the maximum number of sessions denied by the access control policies defined in this access profile.

Number