FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
ssanga
Staff
Staff
Article Id 382092
Description

This article explains an issue where a locally imported certificate, signed by a well-known Certificate Authority (CA), does not appear under System -> HTTPS Server Certificate in FortiGate.

Scope

FortiGate v7.6.1.

Solution

When a Certificate Signing Request (CSR) is generated on FortiGate, signed by a well-known CA, and the publicly signed certificate is imported back into FortiGate, the certificate may not be visible under the  HTTPS Server Certificate.

cert.PNG

 

GUI:


cert-GUI.PNG

 

In the CLI:


FGT # config system global
FGT (global) # set admin-server-cert
Available Certificates:
self-sign local
Fortinet_Factory local
Fortinet_Factory_Backup local
Fortinet_GUI_Server local

 

This issue has been resolved in FortiOS version 7.6.3.

 

Workaround:
Generate a CSR and import a signed certificate using the CLI: Generate-CSR-via-FortiGate-CLI-and-import-signed-certificate-via-FortiGate-CLI