Forum Discussion
Using multiple SSL Profiles on a single virtual server
We ran into the same error this morning but for a different reason. The virtual server in question also have multiple SSL client profiles attached, one is for a wildcard cert and the other two are not. We were replacing the non-wildcard certs, and at the same time created new SSL client profiles. During this step, in the new SSL client profile, I changed the Cipher setting to exclude certain cipher suites to be used, but I didn't make the same change for the profile for the wildcard cert, as there is no cert change there. BIG-IP wouldn't accept the new client profiles until all three client profiles to attach to this VS has the same cipher string setting.
- san2hosh_306591Mar 16, 2018
Nimbostratus
Facing the same issue. Is their any other way to resolve this issue.
- awu_7490Mar 17, 2018
Nimbostratus
Check article K13452. According to that article, if multiple SSL client profiles are attached to the same virtual server, the cipher setting and multiple client authentication settings must match across those ssl client profiles. In our case only cipher setting matters, so fixing that part corrected the problem for us.
- san2hosh_306591Mar 23, 2018
Nimbostratus
But Only one client requested to disable a cipher. So finally I disabled that in all profiles which is worked.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
