skip to main content
Home » Resources » F5 BIG-IP Daemons » F5 BIG-IP APM Daemons

Note: This reference is based on an archived F5 article and is no longer actively maintained. For newer APM versions, see BIG-IP APM Daemons (14.x – 17.x).

When the BIG-IP® system is licensed with BIG-IP APM®, a separate set of processes is initiated in addition to the standard set of BIG-IP processes. The following table lists the core BIG-IP APM services, and indicates the impact to the BIG-IP APM system operation if the service is not running:

Daemon Description Impact if not running Relevant log file
acctd The RADIUS accounting daemon used by BIG-IP APM to send RADIUS accounting start and stop messages to external RADIUS servers.
Note: Removed in BIG-IP 13.1.0 and replaced with a native TMM implementation.
RADIUS accounting messages are not sent /var/log/apm
aced Provides RSA SecurID authentication functionality for APM. RSA SecurID authentication fails /var/log/apm
apmd Executes access policy for user sessions, including authentication, authorization, accounting, and audit. Also supports MPI. No access policy enforcement /var/log/apm
antserver Allows Secure Web Gateway (SWG) to dynamically filter web content. No dynamic web content filtering /var/log/apm
dnscached Provides DNS cache functionality to APM subsystems. APM DNS performance is impaired /var/log/apm
eam Provides external access management for third-party identity systems. External SSO authentication fails /var/log/apm
eca Provides NTLM authentication support. NTLM authentication fails /var/log/apm
httpd_sam Serves BIG-IP-generated user-facing HTML pages. No user login pages displayed /var/log/httpd/access_log
localdbmgr Maintains LocalDB entries for static and dynamic users. ‘User not found’ errors /var/log/apm
mdmsyncmgr Fetches MDM-managed endpoint lists and stores them locally. Unable to fetch MDM-managed endpoints /var/log/apm
nlad Establishes NTLM communication with Domain Controllers. No NTLM communication with DC /var/log/apm
oauth Provides OAuth Authorization Server functionality.
Note: Introduced in 13.x.
OAuth token issuance fails /var/log/apm
omapd Provides IF-MAP server functionality for SWG and AFM. User identification fails /var/log/omapd
ping_access_agent Integrates BIG-IP APM with Ping Identity.
Note: Introduced in 13.x.
Ping Identity authentication fails /var/log/apm
rba Provides client-side Kerberos authentication support. Kerberos authentication fails /var/log/apm
rewrite Rewrites web content links for Portal Access. Portal Access links not rewritten /var/log/rewrite
samlidpd Automates SAML IdP connector creation. SAML IdP connector creation fails /var/log/saml_automation.log
urldb Categorizes incoming URLs for SWG. No URL categorization /var/log/apm, /var/log/urldb-trace.log
urldbmgrd Downloads and indexes URL categorization databases. URL categorization impaired /var/log/apm, /var/log/urldbmgr-trace.log
vdi Handles communication for Citrix and VMware View clients. VDI and RDP access fails /var/log/apm
websso Provides Single Sign-On (SSO) functionality. SSO fails /var/log/apm
Contact our staff of certified experts for help with your F5 & NGINX solutions ➔

We typically respond same business day, but guarantee a response by the next business day.