Forum Discussion
Hannes_Rapp
Mar 23, 2015Nimbostratus
Failure in Exporting FIPS Private Keys
I'm attempting to export a FIPS private key but an error is returned. Apparently something is wrong with the file name. Are there any workarounds to have the FIPS private key (.exp) file exported? Th...
Hannes_Rapp
Apr 01, 2015Nimbostratus
FIPS keys actually are meant to be exportable, and usable, but only on other F5 BigIP systems. In regards to your question, indeed, the FIPS keys were generated on HSM module and they are currently in use in clientssl and serverssl profiles. The method used for generating the keys which can't be exported was not any different. As said, the majority of FIPS keys are usable on other systems, but some FIPS files are either missing or corrupt, even after running the "fipskeys export". Thanks for your response.. so far it appears to be a F5 bug. The FIPS export feature is quite poorly developed on v10.x platform, a lot of FIPS issues are resolved in v11.x but one must try to get there first, without revoking the certificates :)
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects