Installing A Signed Certificate - Fortinet FortiGate FortiGate-1000 Administration Manual

Fortinet fortigate fortigate-1000: user guide
Hide thumbs Also See for FortiGate FortiGate-1000:
Table of Contents

Advertisement

VPN

Installing a signed certificate

FortiGate-1000 Administration Guide
Figure 136:Generating a certificate signing request
Certificate Name Type a certificate name.
Subject
Information
Optional
Information
Key Type
Key Size
Your CA provides you with a digital certificate to install on the FortiGate unit. You must
also obtain and install the CA's root certificate on the FortiGate unit.
Figure 137:Importing a signed certificate
To install a personal or site digital certificate
1
When you receive the digital certificate from the CA, save the certificate on a PC that
has local access to the FortiGate unit.
2
On the FortiGate unit, go to VPN > Certificates > Local Certificates.
Enter an ID type and the related information for the FortiGate unit being
certified. You can use one of the following three ID types:
If you select Host IP, enter the IP address of the FortiGate unit being
certified.
If you select Domain Name, enter the fully qualified domain name of the
FortiGate unit being certified.
If you select E-Mail, enter the email address of the owner of the FortiGate
unit being certified.
Optionally enter information about your organization to further identify the
FortiGate unit being certified.
Only RSA is supported.
Select 1024 Bit, 1536 Bit or 2048 Bit. Larger keys are slower to generate but
more secure. Not all IPSec VPN products support all three key sizes.
01-28006-0009-20041105
Certificates
273

Advertisement

Table of Contents
loading

Table of Contents