Yes, did all of that.FTG # diagnose autoupdate versions | grep
"Certificate Bundle" -A 5 Certificate Bundle --------- Version: 1.00028
Contract Expiry Date: n/a Last Updated using scheduled update on Fri Oct
1 10:20:54 2021 Last Update Attempt: Thu O...
https://www.fortinet.com/blog/psirt-blogs/fortinet-and-expiring-lets-encrypt-certificatesWorkaround
1 – Prevent fallback to the expired Root CAconfig system dns-database
edit "1" set domain "identrust.com" config dns-entry edit 1 set hostname
"apps" ...