Skip to main content
cctanaka
New Member
November 7, 2024
Solved

How to overpass outdated Windows certificate for FortiClient

  • November 7, 2024
  • 1 reply
  • 934 views

Dear Members,

I work in a support team at our company, and we have been facing the following problem:

  1. Users must change their Active Directory passwords on a company computer when the password expires or if they forget it.

  2. After that, users work from home on their personal computers and must use the VPN with the FortiClient.

  3. In this situation, they cannot access the VPN because the Windows certificate has saved the old password.

  4. To resolve this, we need to update the certificate.

Is there any way to minimize support efforts? For example, could FortiClient prompt the user for the new password, or could the certificate be deleted when this issue occurs?

Thank you in advance.

Best answer by funkylicious

You could allow the user the change the password if its expired have a look at, https://docs.fortinet.com/document/fortigate/6.2.16/cookbook/688719/ssl-vpn-with-ldap-user-password-renew

1 reply

funkylicious
SuperUser
SuperUser
November 7, 2024

You could allow the user the change the password if its expired have a look at, https://docs.fortinet.com/document/fortigate/6.2.16/cookbook/688719/ssl-vpn-with-ldap-user-password-renew

"jack of all trades, master of none"
cctanaka
cctanakaAuthor
New Member
November 8, 2024

I'll study that.

Thanks for your help.