Forum Discussion
F5 GTM iquery woes
have two stand-alone GTM devices in opposing DCs and struggling to get the sync-group up and running. is it OK to use the same wildcard certificate bound as a device certificate for the iquery communication channel?
I had this same problem with certs from an internal CA. I figured out I had to load the CA certs under Global Traffic/Servers/Trusted Server Certificates. Putting them under Systtem/Device Certificates/Trusted Device Certificates was not enough. This was with 11.2.1
18 Replies
- Rabbit23_116296
Nimbostratus
Thanks we are 11.4.1 and I think you might just be right. testing now and will provide feedback
- Antony2015
Altostratus
Can you please check iqdump from active to DR/DR to Active ? If the problem persist from DR to Active GTM, please run bigip_add before running a gtm_add to add this in sync-gorup mesh..
- Rabbit23_116296
Nimbostratus
Thanks Anto - its been answered already, I just needed to have the trusted certificates in the correct places (2nd thread).
- psavalam_195881
Nimbostratus
I am having the same issue can you please give the steps that you used to fix this issue
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com