Forum Discussion

JoergK's avatar
JoergK
Icon for Nimbostratus rankNimbostratus
Mar 08, 2016

Where are the ssl certificates are in use?

Good Morning,

 

I have a BIG-IP 10.2.4 Build 864.0 Hotfix HF11 here and try to figure out in which SSL profiles the SSL certificates are being used. I like to know which certs are not in use to delete them from the appliance.

 

Is there any other way than checking all SSL proviles one by one?

 

Thank you in advance for your help.

 

Best regards, Joerg

 

3 Replies

  • Check out this code share if you want to find out which SSL profiles are associated with which VIPs. (If you're on BIG-IP v11.4 or later and are using Windows and have PowerShell installed). You could take the result from that and find all the unique values of client and server profiles.

     

    I don't have a script to figure out cert and key files in use yet, but this may get you started in the right direction.

     

  • Hi, I believe this could help you to get the list of client ssl profiles configured and the status for that. which can give you info on what is used and not. Hope this helps. tmsh show ltm profile client-ssl