Skip to main content
shiv_ad
New Member
January 10, 2025
Solved

Can we use Lets Encrypt certificates for SSL VPN on multi VDOM fortigate 1200D firewall?

  • January 10, 2025
  • 3 replies
  • 2481 views

Hi Team, Our client is requesting us to use Lets Encrypt certificate for SSL VPN certificate protection. We are hosting this customer on the 1200D datacentre firewall as a VDOM.

 

Please advise if we can use this feature? 


I am getting the below message and the "Lets Encrypt" button is greyed out.

 

Use Let's Encrypt and the ACME protocol to automate certificate creation and maintenance. You will need to enable DDNS or purchase a domain.

 

Kind Regards,

Shiv Adhikary

Network Engineer

Best answer by shiv_ad

Fortibot has answer : 

Creating ACME Certificates via CLI on Mul... - Fortinet Community

3 replies

shiv_ad
shiv_adAuthor
New Member
January 10, 2025

Anyone available at present to answer this? 

Fortigate 1200D firmware v7.0.16 

shiv_ad
shiv_adAuthorAnswer
New Member
January 10, 2025
firacode
New Member
January 10, 2025

Yes, you can use Let's Encrypt certificates for SSL VPN on a FortiGate 1200D firewall with multiple VDOMs, but you need to ensure a few prerequisites. The "Let's Encrypt" button being greyed out typically happens if DDNS (Dynamic DNS) is not enabled or if a valid domain name is not configured. To resolve this, ensure your domain points to the public IP of the firewall, enable DDNS if using dynamic IP, and make sure the ACME protocol is supported. Once these conditions are met, the Let's Encrypt certificate creation should work for SSL VPN. For more detailed guidance, check FortiGate documentation or visit firacode.org.