Forum Discussion
Feb 17, 2018
Hello,
The device certificate is independent of the trust certificates used for the DSC configuration. You should be fine to replace it at any time.
One scenario that you need to be concerned about the device certificate is if you're using BIG-IP DNS (GTM), which uses that certificate as part of the trust for the iQuery protocol. If you switch to a CA signed cert then you should install the CA cert in the BIG-IP DNS Trusted Server Certificates list.