Hi all,
I hope you're well.
I am having trouble renewing my Let's Encrypt certificate with the ACME protocol. My FortiGate is currently running 7.4.8 and I have gone through the requirements checklist for ACME renewal and has local-in and other restriction disabled and attempting to run the command:
diagnose sys acme purge-archive
I've ran a sniffer, and it doesn't seem as though the manual commands and initiating any process.
Can anyone please confirm that I have the right command for 7.4.8 or provide any additional information for any steps that I may have missed?
Thanks,
Dan.
Hi Dan
The acme debug command should provide more info about the issue.
diagnose debug application acmed 7
diagnose debug enable
Hi AEK,
Thanks for the response, the issue is now resolved but I will definitely remember that command for next time.
I don't believe this is noted anywhere nor if it was a sheer coincidence however, on one of my firewalls I removed the certificate from the authentication settings and replaced with the Fortinet Factory. I then ran the same commands, and it worked straight away.
On another firewall I did that same thing, but it didn't work immediately this time around. As soon as I removed the ACME interface from the settings and re-applied it then worked immediately.
Many thanks,
Dan.
Thats dedinetly my issue. will the 2nd link you send solve the issue im having with renewing the cert? It looks like there will still be API calls that needs to be made to godaddy
User | Count |
---|---|
2571 | |
1365 | |
796 | |
652 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.