Skip to main content
tonym
New Member
May 7, 2021
Question

SSL VPN with LDAP Server Certificate Error

  • May 7, 2021
  • 1 reply
  • 1722 views

Hi everyone,

 

Does anyone already encountered this error "Incorrect certificate file format for CA/LOCAL/CRL/REMOTE cert." when uploading CA root certificate to fortigate? Certificate is from may lab setup Win Svr 2019 as AD/DNS with enterprise root security authority service installed.

I'm running 6.2.7 fortigate version.  What I'm trying to achieve is to authenticate thru LDAP server my ssl vpn users thru a secure connection.  I'm just wondering since I already achieved it on latest fortigate version 7.0 smoothly without errors.

Am I missing something or any compatibility issues with 6.2.7 versions? Appreciated much your advises and feedback, what causing the error, I'm kinda stock to it. Thank you.

    1 reply

    bkrishnan
    Staff
    Staff
    February 24, 2026

    If the certificate is in a format not directly supported by FortiGate (e.g., .P7B), you may need to convert it to a compatible format like .CER.
    Use Open SSL tool to verify whether certificate format is in correct format before importing to FortiGate again
    https://community.fortinet.com/t5/FortiGate/Technical-Tip-Use-of-openssl-to-verify-certificate-format-when/ta-p/334598