Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
walter44
New Contributor

Is there a way to set up FortiClient to authenticate without client certificate?

The reason I ask this, is as out of 400 tickets I (IT Support) get a month 250 of them are client certificate expiration errors. If we could eliminate this it would be ideal. I don't know why my networks team have not caught wind of it if some solution exists, but I sure want to know. Please please give me an answer, I would very much take this forwards as a change request / possible implementation if there is one. Thanks in advance.

https://9apps.ooo/
3 REPLIES 3
kjohri
Staff
Staff

Hi, 

Could you please attach the screenshot of the error message that the clients get.

Regards,
Kavya
Sheikh
Staff
Staff

Hello Walter44,

 

Although your question still requires some more clarification. I am assuming you are asking about SSLVPN authentication using Forticlient but without certificate based authentication. Below are some of the technical documents that you can try but it requires changes in your existing VPN deployment.

 

https://community.fortinet.com/t5/FortiAuthenticator/Technical-Tip-Radius-authentication-with-FortiA...

https://community.fortinet.com/t5/FortiGate/Technical-Tip-A-quick-guide-to-FortiGate-SSL-VPN-authent...

 

regards,

 

Sheikh

 

**If you come across a resolution, kindly show your appreciation by liking and accepting it, ensuring its accessibility for others**
smayank
Staff
Staff

Hello

 

As from the description that client certificate is enabled on fortigate. This error comes when Fortigate ask certififcate from forticlinet.
Please refer this link

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Configuring-SSL-VPN-client-certificate/ta-...

Thanks & Regards 
Mayank Sharma

Labels
Top Kudoed Authors