ClientSslProfileBinding
{
"client_auth": "string",
"ssl_profile_id": "string",
"certificate_chain_depth": 0,
"client_auth_ca_ids": [
"string"
],
"default_certificate_id": "string",
"sni_certificate_ids": [
"string"
],
"client_auth_crl_ids": [
"string"
]
}
client authentication mode
Client SSL profile defines reusable, application-independent client side SSL properties.
authentication depth is used to set the verification depth in the client certificates chain.
If client auth type is REQUIRED, client certificate must be signed by one of the trusted Certificate Authorities (CAs), also referred to as root CAs, whose self signed certificates are specified.
A default certificate should be specified which will be used if the server does not host multiple hostnames on the same IP address or if the client does not support SNI extension.
Client-side SSL profile binding allows multiple certificates, for different hostnames, to be bound to the same virtual server.
A Certificate Revocation List (CRL) can be specified in the client-side SSL profile binding to disallow compromised client certificates.