I've received some internal guidance pointing to the images ending with
"...MC" for your device. Could you try downloading FortiOS 5.2.3 using
this image:FGT_60D_MC-v5-build0670-FORTINET.out
Long story short: suspected bug. Try this workaround in the
meantime:config system globalset gui-lines-per-page 20 //--the default
is 50end Then go back and refresh the log view.
It all comes down to what the purpose of each certificate is, either the
built-in defaults or ones you generate and import. The CA SSL proxy
certificate is specifically meant for the FortiGate to act as a "CA
on-the-fly", and re-write the certificate...
To paraphrase terribly what I've seen come through our internal forums
over the last week, I finally found out that Auto-IPsec was designed in
situations where a FortiManager was *not* used to centrally push out
configuration changes concerning VPN s...
I personally don't have any more answers about that. Opening the
question up to the wider (monitoring) community... Otherwise, there's
always Stack Exchange.