apm policy agent variable-assign
apm policy agent variable-assiBIG-IP TMSH Mapmapolicy agent variable-assign(1)
NAME
variable-assign - Manages a Variable Assignment agent.
MODULE
apm policy agent
SYNTAX
Configure the variable-assign component within the policy agent module
using the syntax shown in the following sections.
CREATE/MODIFY
create variable-assign [name]
modify variable-assign [name]
options:
app-service [[string] | none]
type [citrix-smart-access | general | intranet-webtop | sso-cred-mapping | virtual-keyboard]
variables { [varname [name] expression {[string] }}
edit variable-assign [ [ [name] | [glob] | [regex] ] ... ]
options:
all-properties
non-default-properties
DISPLAY
list variable-assign
list variable-assign [ [ [name] | [glob] | [regex] ] ... ]
show running-config variable-assign
show running-config variable-assign [ [ [name] | [glob] | [regex] ] ... ]
options:
all-properties
non-default-properties
partition
show variable-assign
show variable-assign [name]
DELETE
delete variable-assign [name]
DESCRIPTION
You can use the variable-assign component to create and manage an agent
that assigns one or more variables to an access policy. F5 Networks
recommends that you use the visual policy editor to create complex
variable assignments.
EXAMPLES
create variable-assign username_variable_assign_ag { variables {
varname "session.logon.last.username" expression "{[mcget
{session.ssl.cert.cn}]}" } }
Creates the username_variable_assign_ag Variable Assignment agent
that automatically assigns the value of the common name field in
the client certificate to the username field of the logon page.
This is useful when an access policy contains the Variable
Assignment agent between the client certification and the AAA
Active Directory server query actions.
create variable-assign acl_variable_assign_ag { variables { varname
"config.connectivity_resource_network_access.MyprofileNR2.acl_name"
expression "expr {\"MY_ACL1\"}" } }
Creates a Variable Assignment agent that carries out a configured
ACL when a particular branch in the access policy is followed,
using the Variable Assignment agent to populate the appropriate
variables with the ACL name.
show variable-assign
Displays a list of Variable Assignment agents.
delete variable-assign MyAssignVariableAgent delete
Deletes the Variable Assignment agent named MyAssignVariableAgent.
OPTIONS
[name]
Specifies the name of a Variable Assignment agent. This setting is
required.
partition
Displays the partition within which the component resides.
app-service
Specifies the name of the application service to which the object
belongs. The default value is none. Note: If the strict-updates
option is enabled on the application service that owns the object,
you cannot modify or delete the object. Only the application
service can modify or delete the object.
type Specifies the type of agent. The default is general.
variables
Adds a variable to or deletes a variable from the Variable
Assignment agent. You must specify the following attributes for
each variable:
expression
A Tcl expression that the system evaluates, and then assigns
the value of the expression to a specific property of the
assigned Network Access resource or to a newly created
session variable.
varname
A variable that forms the left-hand side of the expression.
You can use the name of an existing variable or a new session
variable.
SEE ALSO
COPYRIGHT
No part of this program may be reproduced or transmitted in any form or
by any means, electronic or mechanical, including photocopying,
recording, or information storage and retrieval systems, for any
purpose other than the purchaser's personal use, without the express
written permission of F5 Networks, Inc.
F5 Networks and BIG-IP (c) Copyright 2011-2012. All rights reserved.
BIG-IP 2012-12-2apm policy agent variable-assign(1)