Ask a Question

Advanced Search

Alert ID : INFO265

Last Modified : 04/22/2019

Managed PKI for SSL - Certificate Signing Request (CSR) Generation Instructions for F5 BIG-IP version 9.x and 10.x


This document provides CSR generation instructions using F5 BIG IP 9.x or 10.x GUI. If you are not able to perform the steps on your server, Symantec recommends to contact the server vendor or the organization, which supports F5 BIG IP.

To generate a CSR, perform the following steps:

  1. Launch the F5 BIG IP Web GUI.
  2. Under Local Traffic click SSL Certificates.
  3. Click Create.
  4. Under General Properties give the certificate a name (this name will be used in the future to identify this certificate).
  5. Under Certificate Properties enter the following information:
    • Issuer: Certificate Authority Symantec.
    • Common name: The fully-qualified domain name to which your certificate will be issued.
    • Division: This field is optional; but can be used to help identify certificates registered to an organization. The Organizational Unit (OU) field is the name of the department or organization unit making the request.
    • Organization: The full legal name of your company.
    • Locality, State or Province, Country: City, state, and country where the organization is located. Do not abbreviate.
    • E-mail Address: Your email.
    • Challenge Password, Confirm Password: Enter a password.
  6. Under Key Properties a key size ofat least 2048 must be selected.
  7. Click Finished.
  8. Provided will be the text of a Certificate Signing Request file.
  9. Verify your CSR
  10. Copy and paste the entire body of that file into the enrollment page when prompted.

 Once the certificate has been issued, follow the steps from this link to install it on the server: SO16518