Validation of the server certificate during an SSL handshake
To configure server certificate validation by using the GUI
Bind the CA certificate
-
Navigate to NetScaler Gateway > NetScaler Gateway Policy Manager > Certificate Bindings.
-
In the Certificate Bindings section, click the + icon.
-
In the SSL Certificate(s) Binding page, click Add Binding.
-
In CA Cert, click Add.
-
In the Install CA Certificate page, select the certificate file name in the Certificate File Name field and click Install.
-
In the SSL Certificate(s) Binding page, select the certificate and click Bind.
-
Click Done.
Enable the certificate validation
-
Navigate to NetScaler Gateway > Global settings.
-
Click Change Global Settings.
-
Select Enabled from the Backend Server Certificate Validation drop-down menu and click OK.
To configure server certificate validation by using the CLI
bind vpn global cacert <cacert_name>
set vpn parameter backendcertValidation ENABLED