Created on 10-22-2024 03:52 AM Edited on 10-22-2024 03:54 AM By Anthony_E
Description | This article shows how to clear the cache of the server certificate and client certificate. |
Scope | FortiGate. |
Solution |
Background:
When the web page is blocked by the certificate untrusted error, the following solution can be used to clear the cache and make the certificates work properly again.
The web pages will be accessible again and not blocked.
The error that is visible while accessing the page is:
NET:: ERR_CERT_AUTHORITY_INVALID
Also, in the logs the following error is shown:
block-cert-untrusted
Solution: Open SSH to the FortiGate and execute:
diag ips share list scert_cache <-- To view the server entries.
diag ips share clear cert_verify_cache diag test app ipsmonitor 99 exe update-now |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.