Bug ID 1213577: F5OS Does Not Support Configuring Intermediate CA with Server Certificate

Last Modified: Jul 15, 2026

Affected Product(s):
F5OS F5OS, F5OS-A, F5OS-C, Velos(all modules)

Fixed In:
F5OS v2.0.0

Opened: Dec 28, 2022

Severity: 3-Major

Symptoms

With Apache 2.4.6, SSLCertificateFile does not support having an intermediate CA with the server certificate

Impact

The customer is unable to configure the server certificate correctly with the intermediate CA

Conditions

-- Configure '/system/aaa/tls/config/certificate' with intermediate CA and server certificate -- Configure CA-bundle (root CA) -- Enable verify-client -- Try to log in via browser with p12 or Curl with the client certificate. -- Login fails due to SSLCertificateFile not accepting both the intermediate CA and the server certificate.

Workaround

None

Fix Information

With F5OS 200, the Apache version was updated to 2.4.8, which allowed SSLCertificateFile to have both the intermediate CA and the server certificate

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips