Securing SSL Keys on your BIG-IP
Losing your keys is a real problem
While losing your car keys is indeed a pain, I mean losing your Web Server Keys. Lost keys can expose your website to a Man in The Middle (MiTM) Attack. While in...
Published Jan 05, 2021
Version 1.0Scheff
Employee
Joined May 27, 2019
Scheff
Employee
Joined May 27, 2019
Scheff
Jan 06, 2021Employee
, for sure you want to make sure you have the passphrases documented, "written down" might imply a sticky note on your monitor - that may not be the best. 🙂
I will say, the passphrase on the key is stored within the config but it is protected by the master key - you don't actually need the Master Key itself to access the keys in the BIG-IP configuration. The passphrase on the key itself is the only thing that the BIG-IP user needs.
Thanx for the feedback!