Forum Discussion
On Demand Certificate Authentication with a Self-Signed cert while using a public cert for HTTPS.
Hi,
You may find what you are looking for in the Client Authentication section of the Client SSL profile.
In this section, you can activate Client Certificate Authentication (require, request or ignore)
And you can also define the trusted CAs. In your case, it's your Self Signed certificates
But it's not recommended to use self signed certificates for client authentication because you can't manage revocation status natively. You have to write an irule to retrieve the serial number of the certificate used by the client and check against a daagroup if it's valid or not.
Here a useful link : https://devcentral.f5.com/articles/ssl-profiles-part-8-client-authentication
Hope it helps
Yann
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com