Forum Discussion
mulhollandm_648
Nimbostratus
Aug 26, 2009Server Cert install problems
folks
i'm having difficulties installing a server cert on my F5 4300
i have generated the csr and sent it to my CA (an internal PKI server) but when i get the Base64 cert back i open it in notepad and paste the contents into the f5 i get an invalid cert error
i've also copied in the private key and the encryption password is the right one
i'm told the certificate from the pki server also contains the certificate chain but i'm not really sure what this means
can anyone give me some guidance or advice?
thanks to anyone taking the time to reply
- hoolio
Cirrostratus
Are the cert and key PEM encoded? If not, you'll need to convert them to PEM first. You can use openssl on LTM to do this. Just search for convert certificate on AskF5. - mulhollandm_648
Nimbostratus
aaron - hoolio
Cirrostratus
I'm guessing the base64_certnew is in PEM format if you were able to import the cert/key to the LTM. Once you import the cert/key, combine the rest of the root/intermediate CA certs in one file using a text editor and then import them as a cert. You can then select that bundle in the client SSL profile as the chain certificate. The browser should then correctly tie the server cert to the corresponding root cert in the browser cert store.
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects