Client Certificate Authentication with No Server Side Authentication
- Last Updated: December 10, 2024
- 1 minute read
- LoadMaster
- LoadMaster LTSF
- Documentation
In LoadMaster firmware version 7.2.53, support was added for Client Certificate client authentication with no server side authentication. This is useful in cases where ESP is simply needed for pre-authentication (which is possible using the certificate) and where other credentials are then passed on in the Real Sever (username/password/multi-factor authentication, and so on). To configure this, follow the steps below in the LoadMaster WUI:
- Go to Virtual Services > View/Modify Services.
- Click Modify on the relevant Virtual Service.
- Expand the SSL Properties section and ensure that SSL Acceleration is Enabled.
- Expand the ESP Options section and ensure that ESP is enabled.
- Set the Client Authentication Mode to Client Certificate and the Server Authentication Mode to None.
- Configure any other setting as needed.