This document provides Certificate Signing Request (CSR) generation instructions for F5 BIG IP 11.x. If you are not able to perform these steps on your server, DigiCert recommends to contact the server vendor or the organization, which supports F5.
To generate a CSR, a key pair must be created for the server. These two items are a digital certificate key pair and cannot be separated. If the public/private key file or password is lost or changed before the SSL certificate is installed, the SSL certificate will need to be replaced. The private key, CSR and certificate must all match in order for the installation to be successful.
To create a new Certificate Signing Request, perform the steps below:
6. Click Finished
8. Copy the CSR (including the BEGIN and END tags) as seen below:
-----BEGIN CERTIFICATE REQUEST-----
[encoded data]
-----END CERTIFICATE REQUEST-----
9. Proceed with the Enrollment from the DigiCert web site and paste the CSR in the required field.
Contact Information
During the verification process, DigiCert may need to contact your organization. Be sure to provide an email address, phone number and fax number that will be checked and responded to quickly. These fields are not part of the certificate.
Once the SSL Certificate has been issued, follow the steps from this link to install it on the server: SO22290
F5 Support
For additional information, refer to F5's KB solution: SOL14620