264
01-28007-0144-20041217
Fortinet Inc.
Certificates
VPN
Certificates
Digital certificates are downloadable files that you can install on the FortiGate unit and
on remote peers and clients for authentication purposes.
An X.509 digital certificate contains information that has been digitally signed by a
trusted third party known as a certificate authority (CA). Because CAs can be trusted,
the certificates issued by a CA are deemed to be trustworthy.
To view and manage local certificates
1
Go to
VPN > Certificates > Local Certificates
.
2
Follow the guidelines in these sections:
•
“Local certificate list” on page 264
•
“Certificate request” on page 265
•
“Importing signed certificates” on page 266
To import and view CA certificates
1
Go to
VPN > Certificates > CA Certificates
.
2
For more information, see
“CA certificate list” on page 267
and
“Importing CA
certificates” on page 267
.
For detailed information and step-by-step procedures related to obtaining and
installing digital certificates, see the
FortiGate VPN Guide
.
Local certificate list
Figure 136:Certificate list
Generate
Select to generate a local certificate request. See
“Certificate request” on
page 265
.
Import
Select to import a signed local certificate. See
“Importing signed certificates”
on page 266
.
Name
The names of existing local certificates and pending certificate requests.
Subject
The Distinguished Names (DNs) of local signed certificates.
Status
The status of the local certificate. PENDING designates a certificate request
that should be downloaded and signed.
View Certificate
Detail icon
Select to display certificate details such as the certificate name, issuer,
subject, and valid certificate dates. See
Figure 137
.
Download icon
Select to save a copy of the certificate request to a local computer. Send the
request to your CA to obtain a certificate for the FortiGate unit.
Summary of Contents for FortiGate FortiGate-60M
Page 12: ...Contents 12 01 28007 0144 20041217 Fortinet Inc Index 369 ...
Page 44: ...44 01 28007 0144 20041217 Fortinet Inc Changing the FortiGate firmware System status ...
Page 74: ...74 01 28007 0144 20041217 Fortinet Inc FortiGate IPv6 support System network ...
Page 82: ...82 01 28007 0144 20041217 Fortinet Inc Dynamic IP System DHCP ...
Page 116: ...116 01 28007 0144 20041217 Fortinet Inc Access profiles System administration ...
Page 234: ...234 01 28007 0144 20041217 Fortinet Inc Protection profile Firewall ...
Page 246: ...246 01 28007 0144 20041217 Fortinet Inc CLI configuration Users and authentication ...
Page 278: ...278 01 28007 0144 20041217 Fortinet Inc CLI configuration VPN ...
Page 340: ...340 01 28007 0144 20041217 Fortinet Inc Using Perl regular expressions Spam filter ...
Page 358: ...358 01 28007 0144 20041217 Fortinet Inc CLI configuration Log Report ...
Page 376: ...376 01 28007 0144 20041217 Fortinet Inc Index ...