Forum Discussion
corpkid_17486
Nimbostratus
Jan 23, 2018Scripting certificate management
Hi all. I've been asked to take over the certificate management on our F5 Big-IP load balancers. That said, I am not an "F5" guy but rather a PKI guy so this is all new to me. We have a large volum...
PeteWhite
Employee
Jan 25, 2018So there are three ways in which you can do this: tmsh, GUI and iControl. The easiest to script and automate is iControl with something like Ansible. I'll leave you to research how to do that.
If you want to use tmsh then upload to the /var/tmp directory and use
tmsh load sys file .... The way this works is that each file has a name so you can renew an existing cert or you can create a new one and then modify the Client SSL profile in which it is specified. The devices in a HA pair generally have Config Sync so you load it on one and do the sync which copies it across.Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
