Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
QX-9
New Contributor

CSR enquiry

Customer has an existing Cert for CN a url eg ras.banatesystems.com 

Requested to generate a new csr as the above due to expire 

When creating this on the fortigate , unable to name as ras.banatesystems.com

Amended to new_ras.banatesystems.com

 

Resent to get this signed , however customer has asked that the name should be ras.banatesystems.com.

 

Is there an issue using 

new_ras.banatesystems.com

 get it signed and imported then change name back ?

Or does it have to be explicitly "ras.banatesystems.com"

 

Is there any documentation to support this ?

 

 

1 REPLY 1
AEK
SuperUser
SuperUser

The certificate name can be anything you want, but not like an existing one. However the common name (hostname or IP) must be the exact one of the host for which you need to generate the certificate.

And you cannot change the cert name after signing, but it doesn't matter as long as the common name is correct.

AEK
AEK
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors