FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
jiahoong112
Staff
Staff
Article Id 282216
Description This article describes how to show and clear the Certificate Cache.
Scope FortiGate v6.4, v7.0, v7.2, v7.4 and v7.6.
Solution

This is done for issues that can be related to SSL/TLS certificates, such as certificate validation errors, expired certificates, or certificate revocation.

This is also done as part of the troubleshooting process to help eliminate cached certificate data as a potential source of problems.

 

Show certificate cache:

 

diagnose ips share list cert_verify_cache <-----  If there is no output here, that means that there is no certificate cache at the current point in time.

 

Clear certificate cache:

 

diagnose ips share clear cert_verify_cache

 

Example:

 

cert-cache.png