Forum Discussion

Rabbit23_116296's avatar
Rabbit23_116296
Icon for Nimbostratus rankNimbostratus
May 08, 2014

F5 GTM iquery woes

have two stand-alone GTM devices in opposing DCs and struggling to get the sync-group up and running. is it OK to use the same wildcard certificate bound as a device certificate for the iquery communication channel?

 

  • I had this same problem with certs from an internal CA. I figured out I had to load the CA certs under Global Traffic/Servers/Trusted Server Certificates. Putting them under Systtem/Device Certificates/Trusted Device Certificates was not enough. This was with 11.2.1

     

  • Thanks we are 11.4.1 and I think you might just be right. testing now and will provide feedback

     

  • Can you please check iqdump from active to DR/DR to Active ? If the problem persist from DR to Active GTM, please run bigip_add before running a gtm_add to add this in sync-gorup mesh..

     

  • Thanks Anto - its been answered already, I just needed to have the trusted certificates in the correct places (2nd thread).

     

    • psavalam_195881's avatar
      psavalam_195881
      Icon for Nimbostratus rankNimbostratus
      I am having the same issue can you please give the steps that you used to fix this issue