Forum Discussion

san_239682's avatar
san_239682
Icon for Nimbostratus rankNimbostratus
Jul 19, 2016

configuring virtual server to serve multiple HTTPS sites

Can any one please help on how to configure a fall back SSL profile when we have multiple SSL profiles configured on single virtual server. While I am following the SOL 13452. Under the configuration of fallback client SSL profile. There is a step as mentioned below. "10.Select the Certificate Key Chain check box, select the desired certificate and key for fallback, and click Add"

 

Here it is indicated to add SSL certificate. But I have got three SSL certs. My question is Which certificate do we need to add under the fallback client ssl profile.

 

However we are adding these certs while Configuring the client SSL profiles for TLS SNI

 

Thanks in advance.

 

2 Replies

  • Create 3 SSL profiles for the 3 certs/domains.

     

    You can use any one of the 3 certificates for fallback or something totally different. I think it depends on your infrastructure requirements on which cert you want the client to utilize when the domain doesn't match the configured certificates.

     

  • on one of the three client SSL profile you enabled the "Default SSL Profile for SNI" option. this is the fallback profile, that is just a name for it, not an extra screen or section.

     

    then you add all three of them via SSL Profile (Client) on the virtual server.