Forum Discussion
SAN SSL Certificates on F5 LTM
Hello, I have a requirement to offload MS Exchange 2013 (OWA) traffic on F5 LTM. We now need to go for CA signed certificate. As per the F5 documentation LTM supports only SAN certificates not SNI. but I am confused in selecting the certificates from below link. I want to know which certificate I should go for. https://www.thawte.com/ssl/index.html
Note: we currently have two domains for which SSL offloading is needed. www.xyz.com mail.xyz.com
Regards,
Akhtar
- nickF5_143239Historic F5 Account
You can follow below solution in order to configure SNI in v11 LTM's
sol13452: Configuring a virtual server to serve multiple HTTPS sites using the TLS Server Name Indication feature
https://support.f5.com/kb/en-us/solutions/public/13000/400/sol13452.html
- natheCirrocumulus
SNI is supported from tmos v11.1 I believe. From your requirement a wildcard cert will do but you could also pick an SSL cert and then add your different names too. Which SSL cert u choose depends on whether the vs is public facing so you'd want a stronger cert e.g. SSL cert with OV.
Hope this helps.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com