Forum Discussion
OCSP and CRL
I would like to ask if it is possible to authenticate clients using OCSP and CRL concurrently. We started off with a private CA which supports OCSP based authentication. We have now purchased a cloud based solution from Entrust. The design for the Entrust cloud based solution mandates that we use CRL for the authentication. I have to support existing OCSP and newer CRL clients. I would like to ask if it is possible to configure the LTM to support both methods concurrently. We are running LTM version 11.6.
- Leonardo_Souza
Cirrocumulus
It should work with LTM. APM also provides similar functionality.
However, you need a license for that:
https://support.f5.com/csp/article/K14768
For OCSP, here is the manual to setup:
For CRL, if you just want the CRL, you can setup that in the client ssl profile. You should not need a license for that.
If you are looking for CRLDP, you do need the same license as OCSP. Here is the manual for that:
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com