Forum Discussion

Gregor_Visconty's avatar
Gregor_Visconty
Icon for Nimbostratus rankNimbostratus
Jun 24, 2006

ssl client auth problem

This should be easy, but i'm a bit of a noob with ssl configurations and I'm just not getting this. It doesn't help that the F5 docs are really weak in this area.

 

 

I neeed to terminate ssl on our BigIPs (6800 V9.1.1), and I need to do client auth. We will have a bunch of users (all with the same cert), and I need the Bigip to terminate the SSL connections but only allow the connection if the client has a particular (pre-defined) cert.

 

 

I can't figure out how to configure an ssl client profile to look for a particular client cert, and as soon as I set the profile to 'require' a client cert the connection fails regardless of any other settings that I try on the client or F5.

 

 

Any ideas? Any hints on how I might debug this (I'm flying blind)?

 

 

Thanks in advance
  • Is this an iControl question? For now, you are going to have to contact F5 Product Technical Support for product related questions. We'd be glad to help you with API related questions so feel free to post any and all of them when they come up.

     

     

    -Joe