Last Modified: Jul 15, 2026
Affected Product(s):
F5OS F5OS, F5OS-A, F5OS-C, Velos
Fixed In:
F5OS v2.0.0
Opened: Dec 28, 2022 Severity: 3-Major
With Apache 2.4.6, SSLCertificateFile does not support having an intermediate CA with the server certificate
The customer is unable to configure the server certificate correctly with the intermediate CA
-- Configure '/system/aaa/tls/config/certificate' with intermediate CA and server certificate -- Configure CA-bundle (root CA) -- Enable verify-client -- Try to log in via browser with p12 or Curl with the client certificate. -- Login fails due to SSLCertificateFile not accepting both the intermediate CA and the server certificate.
None
With F5OS 200, the Apache version was updated to 2.4.8, which allowed SSLCertificateFile to have both the intermediate CA and the server certificate