Skip to main content
FortiDor
Explorer II
January 22, 2026
Solved

FortiMail - LDAPS Profile Cert

  • January 22, 2026
  • 4 replies
  • 291 views

Hello,

 

I am trying to setup the LDAPS connection between the FortiMail and the AD for the admin accounts.

 

I would like to use the LDAPS setup and the certificat is required.

The only way to import the AD CS Root CA is in System -> Certificate -> Local Certificate but the password/key is mandatory.

 

The AD Root CA has no private key exportable.

Is there a different way to import the certificat in the FortiMail and setup the LDAPS profile ?

 

Following this KB previously : 
https://community.fortinet.com/t5/FortiMail/Technical-Tip-How-to-create-LDAPS-with-exchange-server/ta-p/240992

 

Thanks

Best answer by AEK

Hi FortiDor

Server certificate is mandatory, not client certificate.

Try install the CA certificate under menu System > Certificate > CA Certificate.

Doing so should make your FML trust the LDAPS certificate.

4 replies

AEK
SuperUser
SuperUser
January 22, 2026

Hi FortiDor

Client certificate is usually not required in LDAPS.

AEK
FortiDor
FortiDorAuthor
Explorer II
January 22, 2026

Hi @AEK 

Thanks for the reply.

Certificat is mandatory for LDAPS.

Is there a different way to setup this kind of certificate or is it the Client Certificat mentionned ?

 

Thanks

AEK
SuperUser
AEKAnswer
SuperUser
January 22, 2026

Hi FortiDor

Server certificate is mandatory, not client certificate.

Try install the CA certificate under menu System > Certificate > CA Certificate.

Doing so should make your FML trust the LDAPS certificate.

AEK
FortiDor
FortiDorAuthor
Explorer II
January 28, 2026

Thanks @AEK the solution provided is working !

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!