Forum Discussion
mutual SSL Certificate Verify event
Hi,
in the context of mutual TLS, I'd like to intercept the certificate verify (digitally signed with client's cert private key) message sent by the client to the F5.
I could not find the appropriate event to look for - I've seen the CLIENT_HANDSHAKE but it does not seem to fit my need. Nor the others listed in the documentation.
How can I intercept and read that particular message? I want to be able to save it for revalidation of the key (troubleshooting+revalidation), but I cannot understand how to grab it in the first place.
Cheers, M
- SurgeonRet. Employee
If my understanding is right, you want big-ip authenticate client based on it's certificate. The connection should not be initiated until client presents it's certificate.
If I am right then you need to configure Client Authentication in applied client ssl profile.
https://support.f5.com/csp/article/K14783
- SurgeonRet. Employee
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com