Hello,
I am trying to setup the LDAPS connection between the FortiMail and the AD for the admin accounts.
I would like to use the LDAPS setup and the certificat is required.
The only way to import the AD CS Root CA is in System -> Certificate -> Local Certificate but the password/key is mandatory.
The AD Root CA has no private key exportable.
Is there a different way to import the certificat in the FortiMail and setup the LDAPS profile ?
Following this KB previously :
https://community.fortinet.com/t5/FortiMail/Technical-Tip-How-to-create-LDAPS-with-exchange-server/t...
Thanks
Hi FortiDor
Client certificate is usually not required in LDAPS.
Hi @AEK
Thanks for the reply.
Certificat is mandatory for LDAPS.
Is there a different way to setup this kind of certificate or is it the Client Certificat mentionned ?
Thanks
Hi FortiDor
Server certificate is mandatory, not client certificate.
Try install the CA certificate under menu System > Certificate > CA Certificate.
Doing so should make your FML trust the LDAPS certificate.
| User | Count |
|---|---|
| 2923 | |
| 1455 | |
| 862 | |
| 826 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.