Forum Discussion
Intermediate and certificate checks in BIG-IP LTM
Hi,
In fact now when you built your Client SSL Profile, F5 check that certificate and key matching. And it warn you with this following message:
01070317:3: profile /Common/test's key and certificate do not match.
but unfortunately F5 does not allow for the moment to control that the chain is valid. so if you put an invalid Chain, F5 does not indicate any error. You have to check it manuallay (SSLlabs, openssl or check in GUI).
K20381201: Verifying a new CA signed SSL certificate
Check using openssl or your browser
You can also verify your configuration using GUI. Check that how issued your certificate then validate that the chain contained issuer...
let me know if you need more details.
regards
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com