Skip to main content
kyle-hsuan
Explorer
May 27, 2026
Question

Fortiweb How to Automatically Renew a Server Certificate

  • May 27, 2026
  • 2 replies
  • 171 views

Hi

Due to the reduction in the maximum certificate lifetime, we need to frequently upload local certificates to FortiWeb in the future.

My environment uses a true transparent proxy mode, can I change it to use Let's Encrypt? If I do so, the certificates used on FortiWeb and the real server will be different. Will this cause any connection issues?

Or is there a way to upload a local certificate and have it automatically applied to all server pool members?

Thanks.

2 replies

ldsouza
Staff
Staff
May 29, 2026

Hello Kyle,

Yes you can use the Lets encrypt certificate, please reffer the below kb link

 

 

To upload and apply the certificate  to automatically to all the server pool members its not possible, instead for automation or simplification use RESTful API or anisble.

https://docs.fortinet.com/document/fortiweb/7.2.1/restful-api-reference
 

filiaks1
Explorer III
June 10, 2026

Also ACME is nice option for lets encrypt ACME certificates | FortiWeb 8.0.5 | Fortinet Document Library

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!