Forum Discussion

Akhtar_109015's avatar
Akhtar_109015
Icon for Nimbostratus rankNimbostratus
Jan 25, 2014

SAN SSL Certificates on F5 LTM

Hello, I have a requirement to offload MS Exchange 2013 (OWA) traffic on F5 LTM. We now need to go for CA signed certificate. As per the F5 documentation LTM supports only SAN certificates not SNI. but I am confused in selecting the certificates from below link. I want to know which certificate I should go for. https://www.thawte.com/ssl/index.html

 

Note: we currently have two domains for which SSL offloading is needed. www.xyz.com mail.xyz.com

 

Regards,

 

Akhtar

 

2 Replies

  • nathe's avatar
    nathe
    Icon for Cirrocumulus rankCirrocumulus

    SNI is supported from tmos v11.1 I believe. From your requirement a wildcard cert will do but you could also pick an SSL cert and then add your different names too. Which SSL cert u choose depends on whether the vs is public facing so you'd want a stronger cert e.g. SSL cert with OV.

     

    Hope this helps.