For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

Jason_41583's avatar
Jason_41583
Icon for Nimbostratus rankNimbostratus
Jul 15, 2013

Use Machine cert for CRLDP ?

Hello All,

 

 

I am trying to use a machine certificate to accomplish the following which I am hoping is possible; We need to have use the windows machine cert for authentication the required checks is to first make sure the certificate is not revoked, then extract the SubjectAltName from the cert which contains the computer name then use an LDAP query to verify the computer name is valid.

 

 

I have an access policy in place to do a machine cert check but when I add CRLDP process after i get the following error:

 

CRLDP Auth agent: Failure status 'Failed to create cert x509'

 

 

So I am thinking since it is not an SSL client cert that I would have to do a variable assign but have been unsuccessful so far also cannot find anyway to parse a machine cert with an iRule.

 

 

Any help on solving this issue would be great

 

 

thanks in advance,

 

 

Jason