Forum Discussion
Remote OCSP and CRLDP server SSL cert checking
How do you establish an LTM virtual server with 2-way SSL and remote revocation checking on the server side of a virtual server? What is the LTM approach and the setup steps for server SSL cert checking using remote OCSP or CRLDP? Is it similar to setting up client SSL remote OCSP and CRLDP checking? I've found lots of documentation on client SSL but nothing helpful for the server side with respect revocation checking for 2-way SSL.
1 Reply
the server side is somewhat different, you are not receiving a client certificate but sending one (optionally) and receiving a server one.
specially with bigip with you probably own the server then CA check and perhaps CN is enough.
i did have a look at the client side ocsp and crldp stuff and if you go the irule route it seems possible to use the same commands but then in the server side events. sounds like a nice thing to try out.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com