FortiAuthenticator
FortiAuthenticator provides centralized authentication services for the Fortinet Security Fabric including multi-factor authentication, single sign-on services, certificate management, and guest management.
edgar1
Staff
Staff
Article Id 247611
Description

This article describes that When renewing CA for certificate authentication, 'Error Certificate binding check failed' error appears when trying to authenticate.

 

rlm_eap_tls: Certificate binding check failed.

eap_tls: ERROR: TLS Alert write:fatal:internal error

SSL routines:tls_process_client_certificate:certificate verify failed

Scope FortiAuthenticator using certificate authentication EAP-TLS.
Solution

In general remote user keeps reference for old CA certificate.

 

               edgar1_0-1677648163429.png
Contributors