Forum Discussion
justin_westover
Nimbostratus
Sep 08, 2016OCSP Responders and Configuration Profiles
We're performing client mutual authentication on a few of our sites and we want to verify that the cert being presented by the client hasn't been revoked. We're using OCSP profiles to do this but we'...
Kevin_Stewart
Employee
Sep 09, 2016In APM, client side authentication objects are typically called "AAA agents". You'll see in the Access menu, under AAA, several client side auth types, including OCSP. In this case you'd create a separate OCSP AAA agent for each CA. Then in the visual policy, after you've collected the client cert, add an Empty agent and apply logic in the branch rules to switch between the OCSP Auth agents based on the issuer of the client's cert.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects