Created on
03-17-2024
06:36 PM
Edited on
01-10-2025
12:16 AM
By
Jean-Philippe_P
Description |
This article describes the way to install a certificate on a domain controller and distributed on all end computers in order to avoid to install it manually. This process is not only of Fortinet CA SSL certificate. |
Scope | FortiOS Windows Server. |
Solution |
Go to Group Policy Management on the Windows Server.
Create a new GPO if it does not exist:
In this case, the GPO's name is 'test'. Right-click and select 'Edit'.
After, navigate to Computer Configuration -> Windows Settings -> Security Settings -> Public Key Policies -> Trusted Root Certification Authorities -> 'Right-Click' and choose the Import option -> Next, choose the path where the certificate file is, then finish the installation.
The client PCs must be restarted.
Note: The article explains how to distribute a Fortinet Root or Intermediate Certificate (CA) to ensure that devices on the network trust the certificate used by the FortiGate, especially in the case of SSL Inspection or SSL VPN. This is done using Group Policies (GPO) in an Active Directory environment.
Fortinet devices do not apply GPOs directly, this is an Active Directory functionality. |
- Mark as Read
- Mark as New
- Bookmark
- Permalink
- Report Inappropriate Content
@bkarl Thank you so much for your contribution!!! please keep up the great work!
- Mark as Read
- Mark as New
- Bookmark
- Permalink
- Report Inappropriate Content
@Stephen_G We do appreciate your contribution!!!