Validating the Origin Certificate
This step defines how the proxy validates the TLS certificate presented by your backend server.
Steps
- Under the TLS section on the General Settings page, find Encrypted with Certificate Validation and select this option.
Configure Trust Store
- Select from the two options presented for Trust Store. All backends in the proxy, including those in Traffic Rules, will use this Trust Store for certificate validation.
Option A: Proxy Trust Store
Use this option if your backend certificate is signed by a well-known public CA.
Option B: Custom Trust Store
Select up to 5 uploaded CAs to use for validating backend certificates if certs are:
- A private CA
- A self-signed certificate
If using Custom Trust store, select the appropriate CA certificate and click Add.