Until your certificate don' t have the extensions like below: It will
not show up in SSL/SSH list Extension Name: X509v3 Basic Constraints
Critical: no Content: CA:TRUE ==> this is required when you order or
create your own certificate.
You can use Firewall address to isolate some IP groups and use them. For
more details reference:
http://help.fortinet.com/fos50hlp/50/index.html#page/FortiOS%25205.0%2520Handbook/objects.030.02.html#1827635