FortiAuthenticator
FortiAuthenticator provides centralized authentication services for the Fortinet Security Fabric including multi-factor authentication, single sign-on services, certificate management, and guest management.
magliano
Staff
Staff
Article Id 399734
Description This article describes how to sign a CSR with FortiAuthenticator without losing the SAN field.
Scope FortiAuthenticator.
Solution

To sign a CSR with SAN information intact, follow these steps:

 

  • Go to Certificate Management -> End Entities -> Users -> Select the Import option.

 

1.png

 

  • In the Import Signing Request or Certificate window:
    • Set Type to CSR to sign.
    • Upload the .csr file under the CSR file (.csr, .req).
    • Select the appropriate Certificate Authority (CA) for signing.
    • Set the Validity period as needed.
    • Choose a Hash algorithm.
    • Select Import to complete the process.

 

2.png

 

  • Install the signed certificate on the original device that generated the CSR.

Note: Using the proper import and signing method in FortiAuthenticator allows maintenance of the SAN field.