| Description | This article describes that it is not possible to connect via SSL VPN when a Require Client Certificate is enabled. |
| Scope | FortiGate v6.X and v7.X. |
| Solution |
Note: For an SSL VPN setup that requires a client certificate, the user will need to import a client certificate issued by a well-known Certificate Authority (CA) onto the user's machine. The default FortiGate built-in certificates cannot be used as a client certificate. FortiGate does not generate client certificates directly. However, it can import and utilize certificates generated by external tools such as OpenSSL.
Related document: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.