Hi
my fortiwan https certificate has expired, so I need to regenerate one
but I can't find a way from fortinet document
if regenerate self-sign, service will affect?
Thanks.
Hello kyle-hsuan,
Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Thanks,
Hello kyle-hsuan,
Can you tell me if the following helps?
Regenerating a self-signed HTTPS certificate on your FortiWAN device can temporarily affect services that rely on that certificate. Here are a few points to consider:
Service Interruption: During the regeneration process, there may be a brief interruption in the HTTPS service as the new certificate is applied. Users trying to access the service may encounter errors until the new certificate is fully in place.
Trust Issues: If you are using a self-signed certificate, clients (browsers, applications) that connect to the service may not automatically trust the new certificate unless they have been configured to accept it. This can lead to warnings or errors for users.
Update Configuration: After regenerating the certificate, ensure that any configurations that depend on the certificate are updated accordingly. This includes any client devices that need to trust the new certificate.
Plan for Downtime: If possible, plan to regenerate the certificate during a maintenance window or a time of low usage to minimize the impact on users.
To minimize service disruption, it’s advisable to inform users ahead of time and ensure that all necessary configurations are in place before making the change.
To regenerate a self-signed HTTPS certificate on FortiWAN, you can follow these steps:
Log in to the FortiWAN Web Interface: Open your web browser, enter the IP address of your FortiWAN device, and log in with your administrator credentials.
Access the Certificates Section:
Delete the Existing Certificate (if necessary): If you want to replace the existing self-signed certificate, you may need to delete it first. Ensure you have a backup or that you are prepared to replace it.
Generate a New Self-Signed HTTPS Certificate:
Apply the New Certificate:
Test the Configuration: After regenerating the certificate, test to ensure that the HTTPS service is functioning correctly and that the new certificate is being recognized by browsers.
User | Count |
---|---|
2567 | |
1358 | |
796 | |
650 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.