Forum Discussion

pynot's avatar
pynot
Icon for Altostratus rankAltostratus
Dec 19, 2019

Common Name for Public/Signed SSL Certificate

Hi Community,

 

Just want to ask regarding purchasing a Signed Public SSL Certificate.

 

Does common name should be a registered dns domain?

 

Because what we are planning is to use a dns domain currently defined in their AD Server, but the dns domain is not a registered DNS domain in the Internet.

 

Ex. proxy.internal-xyz.com

  • intended only for internal use for clientssl profile using F5 SSLO Forward Proxy.

 

Thanks.

 

 

 

 

1 Reply

  • As a starting point. If what you intend is " only for internal use for clientssl profile using F5 SSLO Forward Proxy" than you need to install the full certificate chain (including the private key) of the backend server to build the clientssl/serverssl profiles on the F5. Using a forward proxy, you will need a serverssl profile too.

     

    https://support.f5.com/csp/article/K14783 has good resources and links to more information.