Forum Discussion
khiali_130513
Nimbostratus
Mar 07, 2014The remote server's SSL certificate has already expired - Plugin ID 15901
Hi Experts
We are running Nessus Scan against our F5 BIG-IP LTM devices and getting following alert:-
The remote server's SSL certificate has already expired - Plugin ID 15901
Now prob...
Cory_50405
Noctilucent
Mar 07, 2014It may be that Nessus is assuming an expired certificate if it receives a mismatch between the CN of the certificate and the URL it used to access the LTM. As long as your certificate on the interface is still valid (whether it's a custom certificate or a self-signed should not matter), then this is a false positive finding.
Cory_50405
Noctilucent
Mar 10, 2014Correct. So the Nessus finding should only be a real finding if the certificate you have loaded on the management interface is actually expired. Otherwise, it's a false positive. Doesn't matter which CA (or self signed), since you accessing by IP address.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects
