For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

DScottSLC_13452's avatar
DScottSLC_13452
Icon for Nimbostratus rankNimbostratus
Jan 16, 2015

SSL Cert's expired and cannot be Deleted on F5 BIG IP

Hi, I have x6 expired SSL certs on our BIG IP boxes which cannot be deleted / removed. Each one is giving the following error when I try and delete.

 

Error 01071349:3: File object by name (/Common/Reward_Internal.crt) is in use.

 

These old certs have been replaced by new ones and are no longer in use, but the BIG IP still thinks they are in use?

 

The VS list are all using the new SSL Profile (client) not the old one, so I cannot see where they are in use. Is this a bug on 11.5.1 HF6 which we are using?

 

Any ideas very much appreciated.

 

3 Replies

  • Hi, Thanks for your response, yes the SSL profiles that these certificates used have all been deleted. The boxes have also been rebooted to clear any cache since.

     

    Thanks.

     

  • Hmmm, OK. I'd suggest you take a close look at the /config/bigip.conf file and see if there are any references to these certs there.