Forum Discussion
TMSH/Bash command to check which SAML: BIG-IP as IdP profile is using a specific SSL certificate
- Aug 16, 2019
Would the following work for you:
tmsh -q -c "cd /; list /apm sso saml recursive" | grep -E '(idp-certificate|saml-profiles)'?
tmsh -q -c "cd /; list /apm sso saml idp-certificate | grep certOr something like this.
[Edited]
- DustinWAug 15, 2019
Nimbostratus
Thanks for above but this does't seem to do what I require..
The above shows which LTM SSL profile the certificate is bound to but doesn't specify the APM Access Policy ›› SAML : BIG-IP as IdP profile/s related to the certificate name.
Anymore ideas?
- JGAug 15, 2019
Cumulonimbus
Edited answer above.
- DustinWAug 15, 2019
Nimbostratus
Thanks for prompt reply... I'm probably doing something wrong but the above is not giving me any results even though I know there are IdP profiles associated to the certificate.
In your above command I'm guessing I exchange 'cert' for the certificate name I'm querying but when I hit enter it just prompts to a new line '>'
Even if I switch 'idp-certificate' with the certificate name I receive the same result; new line '>' like it's waiting for input?
Trying to fit my query into your command I'd be trying to: list the apm sso saml idp-profiles that contain 'specific certificate name' as the 'Signing Certificate' located in the 'IdP Service' 'Security Settings'.
I hope I'm explaining this correctly. Sorry for any confusion.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com