Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
chikeungho
New Contributor

Disadvantage of using a internal CA issued certificate? Why is it not common?

Disadvantage of using a internal CA issued certificate? Why is it not common?

2 REPLIES 2
sw2090
SuperUser
SuperUser

well the main disadvantage of this is that this CA is not trusted by the browsers and systems by default. You will always manually have to install this as trusted ca on every system that needs the verfiy your cert.

Thus there is cases where there is no alternative to that e.g. Deep Packet Inspection (SSL Inspection). This needs a sub-ca or ca cert to work (due to the way it works) which you cannot buy (sub-ca) or afford (ca).

-- 

"It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams

-- "It is a mistake to think you can solve any major problems just with potatoes." - Douglas Adams
chikeungho
New Contributor

thank you sw2090.

Could anyone give me any example?

would it affect the efficiency of the hardware?

Thanks.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors