Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ricdgr
New Contributor

Inspect SSL from internal server

Hi, I have internal IMAPS and SMTPS servers, and would like to apply IPS and AV policies to them. SSL inspection, as far as I can see, will rewrite the certificates with the internal CA. I don' t want that. I do want to add my IMAPS and SMTPS certificates to the Fortigate, and make it resign the traffic with them. Any idea how or if this can be done? Thanks.
1 REPLY 1
Dave_Hall
Honored Contributor

The 4.0MR3 Cookbook makes it sound like all you need to do is load your certificate into the " System/Certificates..." section (via the GUI) and the fgt should start using it. However, reviewing the CLI reference guide, it seems like you need to configure some settings in the " config firewall ssl setting" section.

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
Labels
Top Kudoed Authors