Forum Discussion
SSL Intercept SHA1 Certificate
- Jul 26, 2018
I opened a support ticket with F5 and the F5 engineer who answered the ticket made the following recommendation:
"configure a trusted certificate authority bundle in the server ssl profile. The default bundle contains many well-known public CA certs for server-side processing."
After I did this, the problem was solved.
Thanks.
Same problem here in a deployment of APM + SWG with SSL Interception. Some certificates are generated using SHA1 and the Chrome browser (at latest version in the momment) is complaining with this error:
net::ERR_CERT_WEAK_SIGNATURE_ALGORITHM
Anyone solved this issue ?
- JamesE_234305Jul 06, 2018Nimbostratus
The issue with SHA1 certificates being issued was fixed for me in 13.1.
- boneyardJul 07, 2018MVP
if you aren't on 13.1 and as pointed out a few times, please also open a F5 support ticket for such issues and please report back and feedback from there.
- Pedro_Roure_249Jul 09, 2018Altostratus
Using the following version: BIG-IP 13.1.0.7 Build 0.0.1 Point Release 7.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com