Technical Tip : FortiClient with user certificate stored in local machine certification store
Description
This article describes how to configure FortiClient with a user certificate to enable SSL VPN. It includes screenshots of how to modify Microsoft certificate storage to correctly accept Local Machine certificate storage.
The purpose of this KB is to eliminate the Windows 8.0 and 8.1 errors where once the computer is rebooted build-in Administrator group does not have sufficient rights to access imported certificates that are stored under the Local Machine certificate. This error is not seen if Current user certificate storage is used.
The purpose of this KB is to eliminate the Windows 8.0 and 8.1 errors where once the computer is rebooted build-in Administrator group does not have sufficient rights to access imported certificates that are stored under the Local Machine certificate. This error is not seen if Current user certificate storage is used.
Scope
FortiClient on Windows 8.0 and Windows 8.1.
Solution
1. Import user or device certificate and store it under "Local Machine" certificate store.


Once the computer is rebooted a VPN is initiated and the following error message is shown:

On the following image the dedicated user admin_fortinet is added with read permissions to imported certificate.

