Technical Tip: Resolving untrusted certificate issues with FortiGate explicit proxy
| Description | This article describes a solution to resolve untrusted certificate issues with FortiGate Explicit Proxy. The user is experiencing issues with SSL deep inspection, where the default CA certificate 'Fortinet_CA_Untrusted' is displayed for a specific website, despite having a valid SSL profile with CA. |
| Scope | FortiGate. |
| Solution | Common symptoms:
The following steps will help resolve the untrusted certificate issue with FortiGate Explicit Proxy:
16373: 2026-02-18 00:53:30 <09508> [0x5587cc18bad0] => /bin/fnbamd {0x5587cb68b000} => __fnbamd_dns_maintainer at ././daemon/fnbamd/fnbamd_dns.c:60 (discriminator 2) 16374: 2026-02-18 00:53:30 <09508> [0x7f2de6461e1d] => /lib/libsysapi.so {0x7f2de609b000} => timer_callback_wrapper at ././migbase/sysapi/daemon/daemon_api.c:19
|
