TLS profile setup when connecting to a Server with Server-only auth
Hi,
I initiate TLS sessions to a Server which supplies a Server Cert but does not request a Client Cert so presumably doesn't require mutual authentication. I have the Server Root CA loaded. All operates well.
I have included an end-entity Cert in the TLS-profile from the beginning but now i question its purpose. However, if i remove it i get the following error....
ERROR: tls-profile [sbcTLS] has end-entity-certificate records without any d entity certificate
or, if i try to paste-config a new one profile i get...
% tls-profile [BobTest]
Save warning:
The "end-entity-certificate" field is empty
(1 errors)
Do you want to accept this configuration [y/n]?: n