Forum Discussion
Biche_XD_185704
Nimbostratus
Oct 03, 2018[OCSP Stapling] Globalsign configuration
Hi everyone,
My objective is simple : I want to set OCSP Stappling configuration on my HTTPS VIP.
For that, I follow this article
For information, Globalsign is my SSL provider and I have wildcar...
Stanislas_Piro2
Cumulonimbus
Oct 09, 2018Hi Kevin,
This is an interesting thread... i already tried to make it work but didn't spend much time to troubleshoot.
I have a question about the best configuration to make it work.
If we have following certificate tree:
-
RootCA
-
IntermediateCA1
-
IntermediateCA2
- ServerCA
-
IntermediateCA2
-
IntermediateCA1
In clientSSL profile, I configure these certificates:
Cert
-----BEGIN CERTIFICATE-----
ServerCA Base64 encoded
-----END CERTIFICATE-----
Chain (not including Root CA certificate)
-----BEGIN CERTIFICATE-----
IntermediateCA2 Base64 encoded
-----END CERTIFICATE-----
-----BEGIN CERTIFICATE-----
IntermediateCA1 Base64 encoded
-----END CERTIFICATE-----
What certificate must be set in OCSP Trusted Certificate Authorities and Trusted Responders?
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects