Forum Discussion
PK_Bhatia
Nimbostratus
Jun 30, 2014SAN name is not working
I am trying to use a new cert which has alternate name as abc.com and www.abc.com. I am also using SNI with name xyz.com which is default SNI for the SSL profile. I can see both the entries (abc.com ...
Kevin_Stewart
Employee
Jun 30, 2014That's not exactly how the LTM SNI functionality should work. With SNI enabled, LTM will select the client SSL profile with the SNI server name that matches the client's request. You could then create several client SSL profiles, embed each with a unique single-subject cert/key, and then apply all of these client SSL profiles to the LTM VIP.
Given that you have a SAN cert, you shouldn't need to do SNI. Remove the SNI settings from the client SSL profile.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects