Configure LDAPS behind a F5 LTM
we using cloud application allows ad authentication; application allows 1 ldaps server. create fail over/load balance configuration application encountering issues. have f5 using load balance. created csr f5 , generated ssl rapid ssl. fqdn of ssl references vip , not 2 dcs fqdn. i imported ssl dc in ntds/personal certificate store when trying connect verify ssl ldp.exe, error , following error in event viewer: ssl server credential's certificate not have private key information property attached it. eventid:36869. have private key cannot import cert store. have tried run command certutil -repairstore "cert sn" error object not found. @ point, want dcs working through ldaps on port 636. can please lead me in right direction?
thank you
hi,
in case f5 ssl endpoint, external ldap client not see certifcates on dcs, see certificate on f5.
you must import certificate got rapid ssl on f5.
you can configure f5 act ssl endpoint or forward traffic dcs. recommend configuration ssl endpoint.
might information f5 f5 configuration http://support.f5.com/kb/en-us/solutions/public/11000/100/sol11199.html?sr=32865133 and http://support.f5.com/kb/en-us/products/big-ip_ltm/manuals/product/ltm-concepts-11-1-0/ltm_ssl_profiles.html?sr=32865189.
regards,
lutz
Windows Server > Directory Services
Comments
Post a Comment