Skip to main content
tienj
New Member
July 14, 2022
Question

FortiSIEM Collector self-signed certificate has expired

  • July 14, 2022
  • 3 replies
  • 1980 views

Hi,

 

We are running FortiSIEM v5.2.1 with a Collector connected to it. The Collector self-signed SSL Certificate had expired. How do we renew the self-signed certificate for the Collector? I cannot find any forums/documentations how to remediate this issue. 

3 replies

Contributor III
July 18, 2022

Hello @tienj , 

 

Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible. 

 

Thanks, 

 Fortinet Community Team 

premchanderr
Staff & Editor
Staff & Editor
July 28, 2022

Hi @tienj ,

 

If you have a custom certificate then you need to renew the cert which can be then replaced in the httpd.conf file.

 

Also you need CA cert if it'signed by a CA. You need to replace these certs in SIEM and change the httpd

 

Edit /etc/httpd/conf.d/ssl.conf file and make sure these parameters are configured with your certificate and private key filename.
- SSLCertificateFile /etc/httpd/conf.d/fsiem.crt <<<<<<<<<<<< path where you have put the cert in FSM
- SSLCertificateKeyFile /etc/httpd/conf.d/fsiem.key <<<<<<<<< Path where you have put CA cert key

# Restart Apache.

service httpd restart

 

Note: Take a snapshot of VM before doing any changes, so that you can revert in case of issue.

 

Related Link:
https://community.fortinet.com/t5/FortiSIEM/Technical-Tip-How-to-apply-a-self-signed-or-certificate/ta-p/189946

 

Regards,

Prem Chander R

OsamaFattoh
Explorer II
April 7, 2026

Do you find the steps?

 

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.