Lab 2.8 - Certificate Update ------------------------------ In this section, you will modify the SSL profile to present an internally signed certifcate for the PUA webtop and select a trusted Certificate Authority to validate user certificates. Task - Update the SSL Profile ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ #. Click **Local Traffic** >> **Profiles** >> **SSL** >> **Client** |image60| #. Click **pua_webtop-clientssl** |image61| #. During the following steps you will update the **Certificate Key Chain** - Check the custom box beside **Certificate Key Chain** |image67| - Select the default **Key Chain**, and click **Delete** |image62| - Click **Add** |image63| - Change the **Certificate** to **acme.com-wildcard.crt** - Change the **Key** to **acme.com-wildcard.key** - Click **Add** |image64| #. Update the **Certificate Autentication** section - Change the **Trusted Certificate** from **ca.pua.lab.cer** to **ca.f5lab.local.crt** - Change the **Advertised Certificate** from **ca.pua.lab.cer** to **ca.f5lab.local.crt** |image65| #. Click **Update** |image66| .. |image60| image:: /_static/module2/image060.png .. |image61| image:: /_static/module2/image061.png .. |image62| image:: /_static/module2/image062.png .. |image63| image:: /_static/module2/image063.png .. |image64| image:: /_static/module2/image064.png .. |image65| image:: /_static/module2/image065.png .. |image66| image:: /_static/module2/image066.png .. |image67| image:: /_static/module2/image067.png