Forum Discussion
Failed to initialize OCSP Auth Module
I did a test with openssl, but seems that microsoft ca does not allow post requests
-
The Microsoft OCSP service does support POST requests, so there may be a configuration issue here. Also, by default the Microsoft OCSP responder URL has the format: http://hostname/ocsp. Are you using this URL?
-
In the event that your responder did not support POST requests, the APM OCSP client performs POST requests, so that could be an issue. But because you're not seeing the APM OCSP client communicate at all, I'd suspect something else.
-
If you're using a host name in the config and in your OpenSSL command, can the LTM resolve this name to the correct IP?
-
Last, what's in your MY-ROOT-CA.pem file? It needs, at a minimum, the direct issuer of the client's cert.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
