Forum Discussion
Use Machine cert for CRLDP ?
Hello All,
I am trying to use a machine certificate to accomplish the following which I am hoping is possible; We need to have use the windows machine cert for authentication the required checks is to first make sure the certificate is not revoked, then extract the SubjectAltName from the cert which contains the computer name then use an LDAP query to verify the computer name is valid.
I have an access policy in place to do a machine cert check but when I add CRLDP process after i get the following error:
CRLDP Auth agent: Failure status 'Failed to create cert x509'
So I am thinking since it is not an SSL client cert that I would have to do a variable assign but have been unsuccessful so far also cannot find anyway to parse a machine cert with an iRule.
Any help on solving this issue would be great
thanks in advance,
Jason
2 Replies
- vandenhoutenp_9
Nimbostratus
Hi Jason, Did you ever get this working? I'm looking to use a CRLDP to validate machine certificates but I'm not having much luck. Thanks Peter
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com