Forum Discussion
F5 GTM (DNS) & monitor mTLS endpoint
Is there a way to configure a F5 GTM/DNS to have HTTPS heath monitors to send the F5 GTM device certificate by default, if the GTM monitor is requesting client certification due to the endpoint being mTLS enabled?
do not want to maintain/configure a custom client certificate to monitor mtls enabled endpoints.
- F5SJ_
Altocumulus
HTTPS health monitor for probing the virtual servers? In case you have BIG IP deployment of LTMs in the GTM you can skip monitoring but if it is a Generic host than you have 443 open between int self ip (non floating) and the server and then you can use default or custom https monitor.
- Grumpy_Cat
Cirrus
Hi CCM,
You would need to import your device cert/key into the SSL certificate list and then you'll be able to select the device cert/key to use for HTTPS health monitors.
cert/key location:
/config/httpd/conf/ssl.crt/server.crt
/config/httpd/conf/ssl.key/server.key
Kind regards
Ben
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com