04-May-2023 11:30
In the Server SSL profile we have under The Server Authentication section of the Server SSL profile ( server certificate )
and the default action is ignore, my question here is what is mean ignore, is the F5 will ignore any certificate installed on web server ,
04-May-2023 12:21
Do you mean her when the LTM acts as a client during the connection between it and the back-end web server, it accepts any certificate sent from the server even if expired
04-May-2023 12:24
Yes. I found this by accident when one of my AD teams let their server certs expire but the LTM kept chugging along. I'm kinda surprised it's the default setting and I've changed that in my environment for security reasons.
05-May-2023 06:44
@AlanMoen is correct here, just adding the references for others to the Server SSL Profile details covered in knowledge article K14806.