Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
horinius
New Contributor

Possible to replace the default management SSL certificate with another one?

I've searched for a long moment but couldn't find answer to my question below.  It would be nice if someone could help me.

 

I have a FortiGate 80c whose firmware (O/S) is vers 4.3.15.  Its web management UI is using some default certificate.  Of course, I could:

1. put an exception in every browser I'm using to manage the device, or

2. import the certificate to every browser I'm using

 

But I think there's a 3rd option: use a better certificate with a well-known CA.  However, I'm unable to see where I

1. I assign the SSL certificate,

2. I import this SSL certificate (in System > Certificates > Local Certificates like those cert for SSL-VPN?)

 

Thanks in advance

 

NB: In case it's not clear, I'm not talking about the SSL certificate assigned to SSL-VPN.

1 Solution
emnoc
Esteemed Contributor III

Yes your on the right track, you can craft a trusted-cert and cfg the  unit to use it after uploading. I like the global cfg command  for this

 

e.g

 

config sys global

     set admin-server-cert < cert_name >

   end

PCNSE 

NSE 

StrongSwan  

View solution in original post

PCNSE NSE StrongSwan
1 REPLY 1
emnoc
Esteemed Contributor III

Yes your on the right track, you can craft a trusted-cert and cfg the  unit to use it after uploading. I like the global cfg command  for this

 

e.g

 

config sys global

     set admin-server-cert < cert_name >

   end

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors