Forum Discussion
Creating an Identity Certificate
Hello all
We have a bunch of brand new BIG-IP units: 2 x LTMs & 1 x GTM per DC. The LTMs have currently been clustered together using their self-signed certs.
We wish to integrate our devices into the PKI infrastructure we have, this is where my knowledge falls short. We wish to ensure that each device has its own identity certificate, which can then be used for HTTPS/SSL when managing the device.
Silly question, but would this same identity cert also be used when we integrate the LTMs and GTMs (iQuery)? If so, do I need to do anything specifically to instruct the devices to use their ID certs? Also, by adding an ID cert per device, will this break the trust relationship that already exists between the two LTMs?
Many thanks
2 Replies
- nitass
Employee
have you seen this? is it helpful?
sol15664: Overview of BIG-IP device certificates (11.x)
https://support.f5.com/kb/en-us/solutions/public/15000/600/sol15664.html Thank yo nitass
I did check that out. My question still stands (I believe) on whether adding the new ID certs will break the existing clustering trust between the LTMs.
Thank you
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com