Forum Discussion

Rosieodonell_16's avatar
Apr 07, 2016
Solved

Having two certs in the "Trusted Certificate Authorities"

We have a site that needs client certs for client authentication. My server team has implemented a new cert that is SHA256. The problem i have is only a few of our client sites has installed the new client cert. Somehow i need to have two certs in my "Trusted Certificate Authorities" on my F5.

 

Is there a way to do this? Or do i have to change to the new cert and tell everyone else they have to upgrade as well. As you can tell i don't know a lot about certifcates, so anything can help me out. thanks in advance!

 

Settings in the F5 inside the client SSL profile:

 

Client Certificate = require Frequency = once retain Certificate = "checked off" Certifcate chain traversal depth = 9 Trusted Certificate Authorities = compnay_cert Advertised Certificate Authorities = None Certificate Revocation List (CRL) = None

 

  • Just concatenate them into one and link that in the profile.