Forum Discussion
Greifensteiner
Nimbostratus
Sep 02, 2025Expired client-certificate
Does F5 BIG-IP revoke expired client-certificates automatically? If not, is it possible without iRules/APM? Thanks Christian
Sep 02, 2025
I suppose you are talking about client cert in client SSL profile.
If the certificate is expired F5 will not accept it anyway.
If you need to revoke a not expired certificate you should use crl or even better oscp.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects