Forum Discussion
Faintly_Lucky
Nimbostratus
May 08, 2010Command-line renewal of certs
Hi all:
I manage quite a few F5s for different customers as part of my job. One of the main things that I do for them is generate CSRs for new certs or renewals and send them to the customer...
Hamish
Cirrocumulus
May 09, 2010I can see two (Possibly more) ways of doing this.
1. Possibly unsupported, use the command line openssl commands to create a new CSR from a key (FWIW Id recommend using a NEW key rather than generating a CSR from an existing key. You really want to increase to at least a 2048 bit keylength currently).
2. iControl has a certificate interface API in it for doing this... Under Management.
Possibly tmsh also has a method of doing this (I haven't looked). I'm not sure that the bigpipe command has a certificate interface. I've never tried (I usually hand certificate management over and a lot of places just prefer a nice GUI).
H
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects