Created on
03-18-2024
04:20 AM
Edited on
12-10-2024
01:54 AM
By
Anthony_E
| Description |
This article describes how the user can troubleshoot and resolve the installation error 'certificate ca with same name <Cert_Name> does not exist in global' installing a Policy Package on multi-VDOM FortiGates. |
| Scope | FortiManager. |
| Solution |
When trying to install a Policy Package to a FortiGate, the user encounters the following error in the install preview:
It could appear trying to install a Policy Package on a single or a group of Multi-VDOM FortiGates after a different Policy Package was imported from a different FortiGate without VDOMs, but using the same certificate.
This happens for example in an SD-WAN deployment with Multi-VDOM Hub/Hubs while the Spokes are without VDOMs, with the certificate used to establish IPSec tunnels.
To solve the problem there are different solutions, to apply in the FortiManager ADOM containing the FortiGates with Instal preview error :
After that, create the certificate with the same name and use the copied value from the previous step under Device Manager -> Device & Groups -> Managed FortiGate -> Select the FortiGate -> CLI configuration -> Search for certificates in search bar -> Select ca -> Select '+ create new' -> then create the certificate.
Upon completion of one of the two procedures is possible to proceed with installing the Policy Package and the error should not appear in the Install Preview, but to push other Policy Packages on FortiGates without VDOMs could be necessary to change again the range of the certificate. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.