Duplicate ssl certificates in use in VIP EG SSL settings section
search cancel

Duplicate ssl certificates in use in VIP EG SSL settings section

book

Article ID: 418829

calendar_today

Updated On:

Products

VIP Service

Issue/Introduction

Duplicate SSL certificate is in use, how to remove the old certificate from the Enterprise Gateway GUI?

Environment

Release : VIP Enterprise gateway

Version : 9.11.1

Resolution

There are 4 services where an SSL certificate could be in use. After adding (import/create) the new SSL certificate, you will need to check each of these 4 services to ensure that the new SSL certificate is selected (if using SSL for that service):

Self Service Portal IdP 

  • Click Configuring the Self Service Portal IdP if not already configured
  • In VIP EG > Identity Providers > Self Service Portal IdP > if configured, click Edit button
  • In End User Access Settings > apply HTTPS to both Load Balancer URL and Protocol > select the new SSL certificate > click Apply Changes & Restart

VIP Manager IdP 

  • Click Configuring the VIP Manager IdP if not already configured
  • In VIP EG > Identity Providers > VIP Manager IdP > if configured, click Edit button
  • Apply HTTPS to both Load Balancer URL and Protocol > select the new SSL certificate > click Apply Changes & Restart

Enterprise Gateway Console

  • In VIP EG > Settings > Console Settings
  • Apply HTTPS to Protocol  > select the new SSL certificate > click Submit

Health Check 

  • In VIP EG > Settings > Health Check Settings > click Edit button
  • Apply HTTPS to Enable SSL > select the new SSL certificate > click Save Changes

Ensure that the new certificate is in use at these locations if configured for SSL and do not use the Old cert. Once the new cert is in use, you should be able to remove it from the VIP EG->Settings->SSL Settings section.