Skip to main content
Staff
June 10, 2026

Technical Tip: How to add certificate binding CA in remote user sync rules

  • June 10, 2026
  • 0 replies
  • 18 views

Description

This article describes how to correctly add a certificate binding CA in the remote user sync rules.

Scope

FortiAuthenticator.

Solution

Adding certificate binding CA is not possible if the certificate binding common name is not added in the LDAP User Mapping Attributes, for example:

59179bb5.png

 

After adding the Certificate binding common name, choose the correct certificate that should bind. Be aware of the green '+' sign on the right side, select it before the safe, if it is not checked, an error like this will appear:


6edd313c.png


After checking the green '+', the sync rule will be successfully saved:

330e6e39.png