Skip to main content

Validating the Origin Certificate

This step defines how the proxy validates the TLS certificate presented by your backend server.

Steps

  1. Under the TLS section on the General Settings page, find Encrypted with Certificate Validation and select this option.

Configure Trust Store

  1. Select from the two options presented for Trust Store. All backends in the proxy, including those in Traffic Rules, will use this Trust Store for certificate validation.

Option A: Proxy Trust Store

Use this option if your backend certificate is signed by a well-known public CA.

Option B: Custom Trust Store

Select up to 5 uploaded CAs to use for validating backend certificates if certs are:

  • A private CA
  • A self-signed certificate

If using Custom Trust store, select the appropriate CA certificate and click Add.