Forum Discussion
2 Replies
Sort By
- Kevin_StewartEmployee
BIG-IP 13.1 introduces a new SERVERSSL_SERVERCERT event that can be used exactly like the CLIENTSSL_CLIENTCERT event.
- youssef1Cumulonimbus
Hi,
As you know when you do client auth on client side, it's client that provide certificate during handshake ssl.
but in server side it will be F5 so you confirm that you want to retrieve CN in cert provide by f5? to the backend. it make sens?
just for info if you want to retrieve cn (subject) from client cert:
when HTTP_REQUEST { if {[SSL::cert count] > 0}{ set cert [SSL::cert 0] set subject [string tolower [X509::subject $cert]] } }
regards