Forum Discussion
Change default SSL certificate in F5 LTM
Hi Experts
How do we change the factory default SSL certificate shown during mgmt. port GUI access? Suppose the customer wants to use any self signed CA or a CA signed by a trusted 3rd party such as Verisign or Entrust?
Regards,
Sumanta.
5 Replies
- Jinshu
Cirrus
You can change it from
System ›› Device Certificates : Device Certificate ›› Device CertificateBut remember, BIG-IP system uses this device certificate to authenticate access to the Configuration utility, and to accommodate device-to-device communication processes, such as ConfigSync, big3d, and gtmd.
-Jinshu
- Kevin_Stewart
Employee
In the management GUI, it's under System -> Device Certificate. Go to the "Device Certificate" or "Device Key" tab and click the Import button to import a new certificate and private key.
Hi All
Thanks for your replies. I was just wondering if it is possible to increase the existing ciphers to something more stronger in the default certificate for mgmt interface. In that case, probably, I won't have to replace the ssl cert because that will break down my HA and sync.
- Kevin_Stewart
Employee
Using a stronger cert shouldn't break HA or sync, but you'd definitely have to replace the existing one.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com