Hi,
is it possible to provision a Let's Encrypt certificate with an additional domain (SAN certificate) on a FortiGate 200F. We are using the firmware 7.0.11 at the moment.
In the wizzard there is only one input field for domain.
Padi
Hello @padi
Per admin guide below "
The Subject Alternative Name (SAN) field is automatically filled with the FortiGate DNS hostname. It cannot be edited, wildcards cannot be used, and multiple SANs cannot be added.
https://docs.fortinet.com/document/fortigate/7.0.0/new-features/822087/acme-certificate-support?
regards,
Sheikh
Hi padi,
You can refer to the document below for more information:
https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/718606/provision-a-trusted-certificate-w...
https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-allow-Let-s-Encrypt-traffic-through...
Regards!
Thanks for the fast reply.
I already was able to provision my certificates from Let's Encrpyt. But the origin problem is, that we have two WAN connections from different providers, so two diffrent public IPs. Both are listen for SSL-VPN. But in the settings, I only can select one certificate. So I thought I could provision a Let's Encrypt Certificate with name vpn1.example.com and as SAN name vpn2.example.com.
User | Count |
---|---|
2602 | |
1384 | |
804 | |
664 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.