F5 BIG-IP
F5 BIG-IP Integration
Section titled “F5 BIG-IP Integration”Short Summary: Direct integration with F5 iControl REST API to push certificates and update Client SSL Profiles.
Prerequisites
Section titled “Prerequisites”- Connectivity: Backend (or Agent) must reach F5 Management IP (Port 443).
- User Account: F5 User with
Resource Administratorrole (needs write access to/sys/file/ssl-cert).
Configuration
Section titled “Configuration”- Navigate: Admin > Cert Stores > Add New.
- Select Provider:
F5 BIG-IP. - Host:
https://192.168.1.50. - Partition:
Common(default).
Workflow
Section titled “Workflow”- Upload: SSL-CLM uploads
.crtand.keyfiles via transaction. - Install: Installs them into the F5 File Store.
- Bind: Updates the
Client SSL Profileto reference the new cert/key pair. - Sync: Triggers Config Sync to HA peers (optional).