Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
DavidMcQueenLPS
New Contributor

Replace Fortigate Certificate for Explicit Proxy (6.03)

I found a cookbook article for 5.2 but that doesn't hold for 6.03.

 

https://help.fortinet.com/fos50hlp/52data/Content/FortiOS/fortigate-security-profiles-52/Other_Profi...

 

We are trying to transition from a Squid based Man in the Middle filter system to the Fortigate.  We do not want to install the fortigate cert on all the machines, since we already have one installed and working.  Much rather make that one the signer on the fortigate.

 

 

 

11 REPLIES 11
hubertzw

Thanks for update!

JanW
New Contributor

I know this is an old topic, but in case somebody has the same problem and finds this article:
The setting is under "config web-proxy global". There are two settings: 
set ssl-cert "Fortinet_Factory"
set ssl-ca-cert "Fortinet_CA_SSL"
I have changed the last one and it worked as expected (FGT v7.4.2).

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors