Forum Discussion
Muhammad_Irfan1
Cirrus
Nov 06, 2014Client side certificate and server side certificate in HTTPS
I will offload HTTPS traffic on F5 from clients, F5 will decrypt it and encrypt it on the servers side and send it to Siebel web servers.
TO my understanding i will create .CSR file and CA w...
shaggy
Nimbostratus
Nov 06, 2014item 2 - adding the cert/key to a server-ssl profile is not necessary unless the siebel servers are authenticating client certificates
The common name should be the FQDN of the F5 virtual server IP resolved in DNS. Subject alternative names should be any additional hostnames that can/will be used to access the site (common example is a common name of www.abc.com with a SAN of abc.com)
shaggy
Nimbostratus
Nov 06, 2014specify a certificate/key in the server-ssl profile that the siebel servers trust.
you should submit the CSR to have a certificate created by either a public or internal CA that users trust. The certificate referenced in the client-ssl profile will be what all end-users see.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects