LBClientSslProfileBinding
Client SSL profile binding.
{
"certificate_chain_depth": 0,
"client_auth": "string",
"client_auth_ca_paths": [
"string"
],
"client_auth_crl_paths": [
"string"
],
"default_certificate_path": "string",
"sni_certificate_paths": [
"string"
],
"ssl_profile_path": "string"
}
Authentication depth is used to set the verification depth in the client certificates chain.
Client authentication mode.
If client auth type is REQUIRED, client certificate must be signed by one of the trusted Certificate Authorities (CAs), also referred to as root CAs, whose self signed certificates are specified.
A Certificate Revocation List (CRL) can be specified in the client-side SSL profile binding to disallow compromised client certificates.
A default certificate should be specified which will be used if the server does not host multiple hostnames on the same IP address or if the client does not support SNI extension.
Client-side SSL profile binding allows multiple certificates, for different hostnames, to be bound to the same virtual server.
Client SSL profile defines reusable, application-independent client side SSL properties.