Forum Discussion
Steve_M__153836
Jun 19, 2014Nimbostratus
There is one more piece to the trust that you may or may have not completed. I've had v11 pairs where it was required and where it wasn't. I had to export the device certificate from each device and import them on the other device in the pair. You have to go to System>Device Certificates>Trusted Device Certificates and import the certificate from the other device in the pair. I think best practice is to do this before building any other part of the device trust so you probably should completely disassemble your device trust before doing this. I don't think it would hurt if you didn't though....
Sorry to waste your time if you've already done this.
- Jun 20, 2014Interesting! I've upgraded many v10's and never encountered this solution. Establishing trust should be enough to exchange certificates. Will keep this in mind. :)
- Steve_M__153836Jun 20, 2014NimbostratusPatrik I agree. Most times I've not had to take these steps, but it's happened just enough times I thought it would be worth sharing (only in v11 though; and usually when upgrading minor versions, i.e. 11.2.x > 11.3.x).
- LyonsG_85618Jun 23, 2014CirrostratusThanks Steve. I havent tried this but have a change up to test implementation again tomorrow so will try the certficate thing. I'll post my findings back on Wednesday.
- LyonsG_85618Jul 08, 2014CirrostratusApologies fior lates update - I have been on holiday! We attempted another v11 upgrdae last week and hit the same issues as we had previously.
- Steve_M__153836Jul 11, 2014NimbostratusThis is pretty odd. I missed it before, but I'm curious as to why there is a mention of iControl in your original error message? If I were you I would be going through a support case at this point or even have F5 consulting go through your config and see if they find anything that could lead to your situation. I'm not sure we're going to be able to help much more.