Deploying F5 with Oracle PeopleSoft Enterprise Applications Deploying F5 with Oracle PeopleSoft Enterprise

  • View

  • Download

Embed Size (px)

Text of Deploying F5 with Oracle PeopleSoft Enterprise Applications Deploying F5 with Oracle PeopleSoft...

  • Deployment Guide

    Deploying F5 with Oracle PeopleSoft Enterprise Applications Welcome to the F5® deployment guide for Oracle® PeopleSoft® Enterprise applications. F5 provides a highly effective way to optimize and direct traffic for PeopleSoft applications with the BIG-IP® Local Traffic Manager (LTM), Application Acceleration Manager (AAM), Application Security Manager (ASM), and in 11.6 and later, Advanced Firewall Manager (AFM). This guide shows how to quickly and easily configure the BIG-IP system using the PeopleSoft iApp Application template. There is also an appendix with manual configuration tables for users who prefer to create each individual object.

    Why F5? F5 provides a secure, highly available, and scalable application delivery networking device for PeopleSoft deployments. F5 and Oracle have collaborated on delivering market-leading application delivery solutions for PeopleSoft applications. F5 has designed an integrated, agile and adaptable network platform for delivering PeopleSoft applications across the LAN and WAN. The result is an intelligent and powerful solution that secures and speeds your PeopleSoft deployment today, while providing an optimized architecture for the future.

    Products and applicable versions

    Product Versions

    BIG-IP LTM, ASM, AAM, AFM 11.4, 11.4.1, 11.5, 11.5.1, 11.6

    Oracle PeopleSoft 9, 9.1

    PeopleSoft iApp template System iApp that ships with v11.4 and later

    Deployment Guide version 2.1 (see Document Revision History on page 39)

    Important: Make sure you are using the most recent version of this deployment guide, available at

    To provide feedback on this deployment guide or other F5 solution documents, contact us at

  • 2

    DEPLOYMENT GUIDE Oracle PeopleSoft

    Contents What is F5 iApp? 3

    Prerequisites and configuration notes 3

    Optional Modules 4

    Configuration scenarios 4

    Preparing to use the iApp 8

    Configuring the BIG-IP iApp for PeopleSoft applications 9

    Advanced options 9

    Template Options 9

    Network 10

    SSL Encryption 13

    ASM 15

    Application Firewall Manager (BIG-IP AFM) 15

    Virtual Server and Pools 17

    Delivery Optimization 19

    Server offload 21

    Application Health 23

    iRules 24

    Statistics and Logging 24

    Next steps 26

    Modifying DNS settings to use the BIG-IP virtual server address 26

    Upgrading an Application Service from previous version of the iApp template 27

    Troubleshooting 28

    Appendix: Manual configuration table 29

    Manually configuring the BIG-IP Advanced Firewall Module to secure your PeopleSoft deployment 31

    Glossary 36

    Document Revision History 39

  • 3

    DEPLOYMENT GUIDE Oracle PeopleSoft

    What is F5 iApp? New to BIG-IP version 11, F5 iApp is a powerful new set of features in the BIG-IP system that provides a new way to architect application delivery in the data center, and it includes a holistic, application-centric view of how applications are managed and delivered inside, outside, and beyond the data center. The iApp template for PeopleSoft applications acts as the single-point interface for building, managing, and monitoring these servers.

    For more information on iApp, see the White Paper F5 iApp: Moving Application Delivery Beyond the Network:

    Prerequisites and configuration notes The following are general prerequisites and configuration notes for this guide:

    h For this guide, the BIG-IP system must be running version 11.4 or later. If you are using a previous version of the BIG-IP system, see the deployment guide index on The configuration described in this guide does not apply to previous versions. If you upgraded your BIG-IP system to 11.4 from a previous version, and have an existing Application Service that used the f5.peoplesoft_9 iApp template, see Upgrading an Application Service from previous version of the iApp template on page 27.

    h For this Deployment Guide, PeopleSoft must be running version 9 or 9.1. This deployment guide configures the BIG-IP system for the PeopleSoft Web Tier.

    h This document provides guidance for using the iApp for PeopleSoft applications found in version 11.4 and later. There is a manual configuration table at the end of this guide. However, because the configuration can be complex, we recommend using the iApp.

    h If you are using the BIG-IP system to offload SSL or for SSL Bridging, we assume you have already obtained the appropriate SSL certificate and key, and it is installed on the BIG-IP LTM system.

    h If you are using the BIG-IP Application Acceleration Manager (AAM) for Symmetric optimization between two BIG-IP systems (optional), you must have pre-configured the BIG-IP AAM for Symmetric Optimization using the Quick Start wizard or manually configured the necessary objects. See the BIG-IP AAM documentation ( for specific instructions on configuring BIG-IP AAM for Symmetric Optimization.

    h Follow the steps outlined in the Oracle Support Note ‘E-PIA: How to Setup PeopleSoft and WebLogic when using a Load Balancer’ [ID 653998.1]:

    Be sure to:

    » Edit you PeopleTools Web Profile Configuration Virtual Address with your Virtual Server information. » Edit the CookieName parameter in the weblogic.xml file so it is the same for every web server. » Configure the PIA “Inactivity Logout” so it matches the HTTP timeout setting.

    h The Virtual Server created by this PeopleSoft iApp includes an iRule that creates a proprietary header called ‘WL-Proxy-Client- IP’ by default. However, in order to actually see the client IP in PeopleSoft’s PIA_access.log additional configuration is required. Refer to the following Oracle Support Notes for detailed instructions:

    ‘E-WL: WebLogic 9.2 and 10.3: How to Enable "HTTP Access Logging" or "HTTP Extended Access Logging" in Order to Collect Detail on HTTP Transactions’ [ID 662319.1]:

    ‘E-WL: How to Capture the Clients IP Address using a Front-End Proxy with WebLogic Web Server’ [ID 662708.1]:

    Skip ahead Advanced

    If you are already familiar with the PeopleSoft iApp or the BIG-IP system, you can skip the directly to the configuration. See:

    • Configuring the BIG-IP iApp for PeopleSoft applications on page 9 if using the iApp template, or • Appendix: Manual configuration table on page 29 if configuring the BIG-IP system manually.

  • 4

    DEPLOYMENT GUIDE Oracle PeopleSoft

    Optional Modules This PeopleSoft iApp allows you to use three optional modules on the BIG-IP system: Application Acceleration Manager (AAM), Application Security Manager (ASM) and Application Visibility Reporting (AVR). To take advantage of these modules, they must be licensed and provisioned before starting the iApp template. For more information on licensing modules, contact your F5 sales representative.

    • BIG-IP AAM (formerly BIG-IP WAN Optimization Manager and WebAccelerator) BIG-IP AAM provides application, network, and front-end optimizations to ensure consistently fast performance for today’s dynamic web applications, mobile devices, and wide area networks. With sophisticated execution of caching, compression, and image optimization, BIG-IP AAM decreases page download times. You also have the option of using BIG-IP AAM for symmetric optimization between two BIG-IP systems. For more information on BIG-IP Application Acceleration Manager, see

    • BIG-IP ASM BIG-IP ASM protects the People applications your business relies on with an agile, certified web application firewall and comprehensive, policy-based web application security. Offering threat assessment and mitigation, visibility, and almost limitless flexibility, BIG-IP ASM helps you secure your PeopleSoft applications. For more information on BIG-IP Application Security Manager, see

    • BIG-IP AFM BIG-IP Advanced Firewall Manager (AFM) is a high-performance, stateful, full-proxy network firewall designed to guard data centers against incoming threats that enter the network on the most widely deployed protocols—including HTTP/S, SMTP, DNS, and FTP. By aligning firewall policies with the applications they protect, BIG-IP AFM streamlines application deployment, security, and monitoring. For more information on BIG-IP AFM, see

    • Application Visibility and Reporting F5 Analytics (also known as Application Visibility and Reporting or AVR) is a module on the BIG-IP system that lets customers view and analyze metrics gathered about the network and servers as well as the applications themselves. Making this information available from a dashboard-type display, F5 Analytics provides customized diagnostics and reports that can be used to optimize application performance and to avert potential issues. The tool provides tailored fee