F5 is upgrading its customer support chat feature on My.F5.com. Chat support will be unavailable from 6am-10am PST on 1/20/26. Refer to K000159584 for details.

Forum Discussion

Muhammad_Irfan1's avatar
Nov 09, 2014

Help me with problem of Self signed certificate in the chain

Please help me out all of you experts. I have configured client side SSL profile and uploaded certificate, also put CA bundle of all certificates uptill root in Trusted certificate authorities. The problem i am having is that still the SSL secure handshake is failed. And Open SSl shows that there is a self signed certificate in the chain which is root certificate. How to tell F5 that root certificate will always be self signed and ignore it. I did all the need full in browser. Please help

 

1 Reply

  • R_Marc's avatar
    R_Marc
    Icon for Nimbostratus rankNimbostratus

    I don't really understand your problem. All root certs are self signed. The F5 on a client-side profile doesn't care. Openssl, unless you tell it what the root is (-CAfile /path/to/rootca), will not be able to validate the chain. Browsers typically have all the most common Root CA's in their truststores.