Forum Discussion
tatsu
Nimbostratus
Oct 23, 2019iRule for OSCP auth
Hi. I'm trying HTTPS traffic offload with client authentication using BIG-IP VE on AWS. And when Client Cert is expired or revoked, I want to show the user another web page. I am going to use...
Yoann_Le_Corvi1
Cumulonimbus
Oct 25, 2019Hi,
Yes that would be if the F5 actually interrogated the OCSP. But I don't think it does.
Did you configure clientssl profile to "require" client certificate, and add a CRL object there ? With LTM, only CRL will be able to be checked by default, unless you use C3D.
Yoann
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects