Forum Discussion
Exporting SSL Certificate to another BIG IP
Hello,
We are upgrading our F5 boxes and we need to to move all the traffic SSL certificates to a new box.
The certificates that are on the old box was signed by a CA after generating a CSR from the box itself.
Should we do the same for the new box or simply export the signed SSL traffic certificate to it without resigning the Cert from a new CSR generated from the new box.
Please advise.
Thank you.
I have done the changes successfully, and it worked by simply uploading the signed cert with the key and the cert key chain from the signed authority side.
Thanks :)
Hi
- RaghavendraSYAltostratus
You can export certificates and key from F5-A and import in F5-B. While importing please import both certificate and key separately. It works fine and we did same in our environment
- RaghavendraSYAltostratus
Import both certificate and key separately with same name.
- F5_324021Cirrus
Hello ,
Thanks for your replies,
So no need to regenerate a CSR from the new box?
simply exporting the SSL traffic Cert and its key will work?without the CSR presented on the box?
- SnlCirrostratus
you can use certificate archive option were you can select key and certificate and restore to another bigip without any issue
- F5_324021Cirrus
I have done the changes successfully, and it worked by simply uploading the signed cert with the key and the cert key chain from the signed authority side.
Thanks :)
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com