- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Fortigate doesn't send certificate chain
I notice that fortigate doesn't send certificate chain for vpnssl portal neither for authentication portal.
I have try to reimport pfx certificate being safe that contain full chain.
I have checked also other fortigate and none of them send the chain causing error on certificate validation
Checked on FortiOS 6.2 and 7.2
Created on ‎07-23-2024 03:18 AM Edited on ‎07-23-2024 03:19 AM
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello @lvfranz78 ,
Can you try to install the intermediate certificate to FortiGate? After installation, FortiGate will link these certificates automatically.
NSE 4-5-6-7 OT Sec - ENT FW
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Intermediate are just present. If I try to import, Fortigate told me that are duplicated.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello @lvfranz78 ,
Could you have uploaded an intermediate certificate that is not compatible with your certificate?
From here, you can see which certificates FortiGate is sending when you test your SSL-VPN portal.
https://www.ssllabs.com/ssltest/
NSE 4-5-6-7 OT Sec - ENT FW
