|
This post was updated on .
Thanks a lot.Our life became easy with option 2 :)
If client wants to go for End-to-End SSL,then from note id 2143101.1 which you have provided,we could see client side profile and server side profiles to be created
SSL Client:
Parent Profile = clientssl
Certificate & Key = Subject Alternative Name (SAN) based certificate installed on BIG-IP
Chain = Intermediate chain certificate specified
SSL Server:
Parent Profile = serverssl
Certificate & Key = Basic certificate issued to the EBS instance
Chain = Intermediate chain certificate specified
1)Certificate & Key for SSL Client(clientssl) will be handled by loadbalancer team but for server ssl,how do we generate certificate and key.
I mean we have 2 application nodes-so for which host name we have to generate certificate and how about keys.I think we can extract the private/public keys from the certificate.please correct me if i am wrong
thanks for all the support
|