Forum Discussion
Andrew_Jones
Nimbostratus
Sep 08, 2020Irule explanation
Hi can some explain what the following Irule is looking to do when CLIENTSSL_CLIENTCERT { if { [SSL::cert 0] ne "" }{ if { not [class match -- [X509::subject [SSL::cert 0]] contains [v...
Lidev
Nacreous
Sep 08, 2020Hi,
in brief, this irules checks the CN of the X509 certificate in order to verify if it's present in the DataGroup [virtual name]_cert_dg , if not compliant it rejects the call.
More details here :
https://clouddocs.f5.com/api/irules/X509__subject.html
https://clouddocs.f5.com/api/irules/SSL__cert.html
Regards
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects