Forum Discussion
achrich
Nimbostratus
Jul 31, 2014F5 VPN multiple certificate prompt
Hi,
We are currently deploying the F5 Edge Gateway vpn solution across our user base.
Part of the security is to check the SSL certificate via a internal CA.
The issue is all users will ha...
Kevin_Stewart
Employee
Jul 31, 2014The SSL/TLS "standards" only define a small subset of certificate_type values, all of which are signing types (rsa_sign, dss_sign, ecdsa_sign, etc.). Even if you could modify the certificate type in the SSL handshake's Certificate Request message, the client would likely ignore it anyway. If the certificates are issued by different authorities, you can specify specific CAs in the Advertised CAs list in the client SSL profile to provide a "root hint" to the client.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
