FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
lmassip
Staff
Staff
Article Id 400162
Description This article provides a workaround for this issue in v7.6.1, where a local certificate imported after CSR signing appears as valid in the GUI, but cannot be selected for HTTPS GUI access in either the GUI or CLI.
Scope FortiGate v7.6.1.
Solution

In v7.6.1, after importing a signed certificate generated via a CSR from the FortiGate, the certificate may display with status Valid in the GUI. However, it is not available for selection under the HTTPS GUI certificate options in either the GUI or the CLI.

The following error may be displayed during import:

 

Unable to create certificate.

 

Despite the successful import status, the certificate cannot be selected as the HTTPS GUI certificate. This issue has been identified under Bug ID 1119143 and is resolved in FortiOS 7.6.3:3494.

 

339169df.jpg

 

Workaround:
Downgrade to a version below v7.6.1, where the issue is not present, or upgrade to v7.6.3 where the issue is fixed.

 

4dd38b41.jpg