Forum Discussion
F5 GTM iquery woes
have two stand-alone GTM devices in opposing DCs and struggling to get the sync-group up and running. is it OK to use the same wildcard certificate bound as a device certificate for the iquery communication channel?
I had this same problem with certs from an internal CA. I figured out I had to load the CA certs under Global Traffic/Servers/Trusted Server Certificates. Putting them under Systtem/Device Certificates/Trusted Device Certificates was not enough. This was with 11.2.1
- Rabbit23_116296Nimbostratus
Thanks we are 11.4.1 and I think you might just be right. testing now and will provide feedback
- Antony2015Altostratus
Can you please check iqdump from active to DR/DR to Active ? If the problem persist from DR to Active GTM, please run bigip_add before running a gtm_add to add this in sync-gorup mesh..
- Rabbit23_116296Nimbostratus
Thanks Anto - its been answered already, I just needed to have the trusted certificates in the correct places (2nd thread).
- psavalam_195881NimbostratusI am having the same issue can you please give the steps that you used to fix this issue
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com