Description | This article describes how to generate a self signed certificate from Gui for internal use. |
Scope | |
Solution |
FortiGate can generate a certificate using our self-signed: CA: Fortinet_CA_SSL Using a server certificate from a trusted CA is strongly recommended.
1) Go to System -> Certificates and select 'Create / Import'.
3) Once it opens, fill up the details as per the requirement.
Ensure that common name and subject alternative name are the ones that will be used to access the FortiGate or captive portal.
If the unit is to be accessed with an IP address fill in the same here.
To redirect users to captive portal FQDN instead of IP address use the below command.
Ensure that the CA certificate is downloaded in the above screenshot to avoid certificate errors.
This can be pushed to clients using Windows AD GPO.
Certificate for captive can be set in User & Authentication -> Authentication Settings.
To apply it on FortiGate admin login, Go to System -> Settings -> Administration Settings -> HTTPS Server Certificate.
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.