Self-signed certificate replaced with wildcard?
Hi.
I have a wildcard certificate, with a deadline of one year.
I also have several servers. I thought that I would use own certificates inside the network.
For external guests - Forti will replace this certificate into a wildcard certificate for each server. How to do it?
For this moment I created new SSL/SSH Inspection Profile with:
Enable SSL inspection of - Protecting SSL Server
Server certificate - commercial wildcard
Inspect all ports - disabled
HTTPS: enabled
It works - from WAN I see the wildcard certificate, from LAN I see my own certificate. But with WAN the website loads very slowly or not at all. I wonder what's wrong.
I set what you can see in the screenshot: https://docs.fortinet.com/document/fortigate/7.4.1/administration-guide/055107/protecting-an-ssl-server
