Forum Discussion

KaiTT's avatar
KaiTT
Icon for Nimbostratus rankNimbostratus
Apr 23, 2020

PKCS#12 certificate and SSL profile

We are trying to apply the certificate of PKCS#12 type to the SSL profile

Should one PFX file generated as shown in the picture below be added to the certificate/key/chain in the same way?

 

Also, is it possible to apply from BIG-IP when converting jks (Java Keystore) file to PKCS#12?

 

 

2 Replies

  • Yes, you need to select same file under SSL profile which was imported. Do not select test.pfx under chain as chain of certificate is different all together.

     

    Sorry but I did not got your second question. Do you mean is it possible to import converted certificates on F5?

  • If the imported PFX contains the chain (which PKCS12 does by default) then using the same "ssl cert name" in the 'Chain field will use the chain certs in that pfx file.

     

    when you import a PFX file, you should be able to see the issued and signing certs, provided the PFX was exported with the option 'include all certs in the chain' selected