This article provides quick instructions on how to generate a CSR Code and install an SSL Certificate on FortiGate. In the final two sections, we've also included a brief history of FortiGate, as well as tips on where to buy the all-time SSL Certificate for FortiGate.

If y'all've already practical for your SSL Certificate and obtained the necessary SSL files, skip the CSR generation role and jump directly into the installation instructions.

Generate a CSR code on FortiGate
Install an SSL Document on FortiGate
Examination your SSL installation
FortiGate history
Where to purchase the all-time SSL Certificate for FortiGate?

Generate a CSR code on FortiGate

You can't purchase an SSL Document without generating a CSR lawmaking first. CSR stands for Certificate Signing Request, a cake of encoded text with your contact details within. The Certificate Government utilize the CSR lawmaking to verify your credentials before they can approve your SSL request.

Along with the CSR code, you will also create your Private Key. The CSR and Private Central form the SSL document key pair. To generate the CSR code on FortiGate, please follow the steps below:

  1. Log into your FortiGate Direction Console
  2. Get to VPN > Certificates > Local Certificates and hit Generate
  3. On the Generate Certificate Request folio, submit the post-obit information that applies to you:
    • Certificate Name: give a friendly proper noun to your CSR/Private fundamental files
    • ID type: from the driblet-down listing choose Domain Name
    • Domain Name: enter the FQDN (fully-qualified domain name) you intend to secure with an SSL Certificate. For case, yourdomain.com

      Notation: Y'all must fill up in the Optional Information fields to obtain a certificate from your CA

    • Organizational unit: this is the section within your company responsible for the SSL Certificate. Usually, it's IT or Web Administration
    • Organization: enter the full legal name of your company. For instance, Your Company LLC
    • Locality (City): specify the city where your company is officially registered
    • Country/Province: name the land where your company is located
    • Country: select your state from the drop-downwards list
    • E-mail: provide a valid electronic mail accost
    • SAN: you lot can leave this field bare. If you want to secure multiple domains, you volition specify them during enrollment
    • Primal Blazon: from the drop-down listing select RSA
    • Key Size: from the drop-down list select 2048 bits
    • Enrollment method: select the File Based selection
  4. Verify the info you've only submitted and click OK
  5. Your CSR will  exist added to the certificate listing with the status PENDING
  6. Navigate to the Local Certificates page
  7. Select the PENDING CSR you've just generated and click Download
  8. Save the CSR file in any directory of your choice. Y'all can now open it with whatever text editor (e.1000., Notepad) and re-create-paste its contents, including the BEGIN and Stop tags during your SSL order.

Install an SSL Certificate on FortiGate

After your CA sends your signed SSL Certificate to your inbox, download the ZIP folder and excerpt the SSL files on your device. If y'all've generated the CSR code on FortiGate, your Private Key is already on the FortiGate server. Please, follow the steps below to install your SSL certificate:

  1. Set up your principal and intermediate certificates
  2. Copy and paste the contents of your main and intermediate certificates into separate Notepad files and relieve them with .crt extension. When copying the encrypted document text, don't forget the BEGIN and END tags equally well
  3. Log into your FortiGate dashboard
  4. Navigate to System > Certificates and select Import > Local Certificate
  5. Scan your primary document and click OK. The status of your document should modify from PENDING to OK
  6. Next, import your intermediate certificate. Go to Organization > Certificates and select Import > CA Certificate
  7. Browse your intermediate document and click OK. You lot should see your intermediate CA in the CA Certificates list
  8. Now, click on VPN > SSL > Settings
  9. In the Connection Settings pane, under the Server Document drib-downward bill of fare, select the SSL document you've just installed and click Utilise.

Congratulations, you've successfully installed an SSL certificate on FortiGate VPN system.

Test your SSL installation

After you install the SSL Certificate on FortiGate, you should run an SSL scan to look for potential errors or vulnerabilities in your configuration. For more info, cheque our article on the best SSL tools for testing an SSL Certificate.

FortiGate history

Fortigate is a product of Fortinet, an American multinational corporation specializing in network security and estimator security. Fortigate Firewall was first launched in 2002, with wireless access points, sandboxing, and messaging security added in the following years.

In April 2022, Fortinet began developing its Security Material architecture so multiple network security products could communicate as one platform.

In July 2022, the company released FortiGate SD-WAN, its proprietary SD-WAN service.

Where to buy the best SSL Certificate for FortiGate?

SSL Dragon is the only SSL vendor you'll ever need. We've built potent partnerships with the all-time Certificate Authorities in the industry to offer you lot incredibly low prices across the entire range of SSL products. All our certificates are compatible with FortiGate. Below are the types of SSL certificates available at SSL Dragon:

  • Domain Validation
  • Business Validation
  • Extended Validation
  • Wildcard
  • Multi-Domain
  • Code Signing
  • IP Address
  • Email/Documents

Yous can observe the all-time SSL Certificate for your project and budget with the help of our exclusive SSL tools. The SSL Magician offers a quick and efficient way to decide the right SSL for you, while the Advanced Certificate Filter allows you to sort and compare different certificates past price, validation, and features.

If yous observe any inaccuracies, or yous have details to add to these SSL installation instructions, please experience free to send usa your feedback at [electronic mail protected]. Your input would be greatly appreciated! Give thanks yous.