Forum Discussion
SSL Server - Authenticate CN vs Pool Member FQDN
I want to use a single SSL Server profile for multiple server pools. The server pools have members added by FQDN. Can the SSL profile be made to qualify server certificates by matching their Common Name to the FQDN used to DNS-resolve to server IP?
The alternative would be to build a unique SSL server profile per server pool, set Server Certificate to "require," and populate the Server Name with the Common Name in the server certificate. Of course, that would require a unique SSL profile per server, which I don't want to do. It would be much better if the F5 could authenticate server certificate CN versus Pool Member FQDN. Is that possible?
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com