Add certificates using the Console

You can manage SSL/TLS certificates for F5 NGINXaaS for AWS using the NGINXaaS console.

Add an SSL/TLS certificate to NGINXaaS

  • Select Certificates in the left menu.

  • Select Add Certificate.

  • In the Add Certificate panel, provide the required information:

    Field Description
    Name A unique name for the certificate.
    Type Select the type of certificate you are adding: SSL certificate and key, or CA certificate bundle.
    Certificate Import Options Choose how you want to import the certificate. Enter the certificate text or upload a file.

  • Repeat the same steps to add as many certificates as needed.

Use a certificate in an NGINX configuration

To use a certificate in an NGINX configuration, follow these steps:

  • Select Configurations in the left menu.
  • Select the ellipsis (three dots) next to the configuration you want to edit, and select Edit.
  • Select Continue to open the configuration editor.
  • In your configuration, select Add File and either choose to use an existing certificate or add a new one.
    • If you want to add a new certificate, select New SSL Certificate or CA Bundle and follow the steps mentioned in Add an SSL/TLS certificate to NGINXaaS.
    • If you want to use an existing certificate, select Existing SSL Certificate or CA Bundle and use the menu to choose a certificate from the list of certificates you have already added.
  • Provide the required path information:
    Field Description Note
    Certificate File Path This path can match one or more ssl_certificate directive file arguments in your NGINX configuration. The certificate path must be unique within the same deployment.
    Key File Path This path can match one or more ssl_certificate_key directive file arguments in your NGINX configuration. The key path must be unique within the same deployment. See the NGINX Filesystem Restrictions table for the allowed directories the file can be written to.
  • Update the NGINX configuration to reference the certificate you just added by the path value.
  • Select Continue and then Save to save your changes.

Edit an SSL/TLS certificate

  1. On the left menu, select Configurations.
  2. On the list of configurations, select the ellipsis (three dots) icon next to the configuration you want to update.
  3. Select Edit.
  4. Update the "Description" field as needed and select Next.
  5. Modify the configuration file(s) as needed.
    • Select a config file in the file tree to update its content.
    • Select Add File to stage new content such as certificates, configuration files, or upload non-configuration files.
    • Select File Actions to rename, move, delete, or copy files as you build out the overall configuration filesystem.
    • Warnings, errors, and recommendations appear in the editor as you modify your configuration content.
    • You can hover over an NGINX configuration directive to view helpful descriptions and usage details.
  6. Select Next when you have completed your changes.
  7. Review the changes using the "Inline" or "Side-by-side" views and select Save.

You will see a notification confirming that the configuration was updated successfully, and a new config version will be available to apply to your NGINXaaS deployments.

Delete an SSL/TLS certificate

  • Select Certificates in the left menu.
  • On the list of certificates, select the ellipsis (three dots) icon next to the certificate you want to delete.
  • Select Delete.
  • Confirm that you want to delete the certificate.
Warning
Deleting a TLS/SSL certificate currently used by a NGINXaaS deployment will cause an error.

What’s next

Upload an NGINX Configuration