FortiNAC
NOTE: FortiNAC is now named FortiNAC-F. For post-9.4 articles, see FortiNAC-F. FortiNAC is a zero-trust network access solution that provides users with enhanced visibility into the Internet of Things (IoT) devices on their enterprise networks.
kmody
Staff
Staff
Article Id 328109
Description This article describes how to extract installed SSL certs for tomcat/portal/agent.
Scope FortiNAC-C, FortiNAC-F.
Solution
  1. Export the certificate from the Java Keystore and import it into a PKCS #12 Keystore:

 

keytool -importkeystore -srckeystore /bsc/campusMgr/.keystore -destkeystore keystore.p12 -deststoretype PKCS12 -srcalias <tomcat/portal/agent> -deststorepass <password> -destkeypass <password>

 

  1. Export the certificate from the PKCS12 Keystore:

 

openssl pkcs12 -in keystore.p12 -nokeys -out <Cert-File>

 

  1. Export the private key from the PKCS12 Keystore:

 

openssl pkcs12 -in keystore.p12 -nodes -nocerts -out <PrivKey-File>

 

  1. Check and copy the certs and keys created in a notepad file on the local machine and save as .pem and .key:

 

cat <Cert-File/PrivKey-File>

 

  1. Upload the certs to the correct target using the FortiNAC GUI.
Contributors