Created on
02-25-2025
10:41 PM
Edited on
03-18-2025
03:19 AM
By
Jean-Philippe_P
| Description | This article describes how to enable and require client certificates for specific URLs only. |
| Scope | FortiWeb and FortiWeb-VM. |
| Solution |
Prerequisite: Enable the Client Certificate Verification in FortiWeb Server Policy by following the guide at the end of this article.
There is a requirement to require a client certificate from a client access for only a specific URL instead of the full website URL.
For example:
FortiWeb provides the option to achieve this requirement using the URL Certificate feature. The feature supports multiple URLs.
Step 1: Create a new URL Certificate rule and specify the respective URLs:
Step 2: Select and apply the URL Certificate rule created in Step1 for the respective Server Policy:
Note:
Related documents: How to apply PKI client authentication (personal certificates) |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.