12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Remote Certificates<br />

VPN Certificates<br />

Importing separate server certificate and private key files<br />

Use the Upload Certificate dialog box to import a server certificate and the<br />

associated private key file when the server certificate request and private key<br />

were not generated by the <strong>FortiGate</strong> unit. The two files to import must be available<br />

on the management <strong>com</strong>puter.<br />

Figure 244:Upload Certificate<br />

Certificate file<br />

Key file<br />

Browse<br />

Password<br />

Enter the full path to and file name of the previously exported<br />

certificate file.<br />

Enter the full path to and file name of the previously exported key<br />

file.<br />

Browse to the location of the previously exported certificate<br />

file/key file, select the file, and then select OK.<br />

If a password is required to upload and open the files, type the<br />

password.<br />

Remote Certificates<br />

Note: The certificate file must not use 40-bit RC2-CBC encryption.<br />

For dynamic certificate revocation, an OCSP (Online Certificate Status Protocol)<br />

server is used. Remote certificates are public certificates without a private key.<br />

The OCSP is configured in the CLI only. For more information, see the <strong>FortiGate</strong><br />

CLI Reference.<br />

Note: There is one OCSP per vdom.<br />

Figure 245:Remote certificate list<br />

Installed Remote (OCSP) certificates are displayed in the Remote Certificates list.<br />

To view installed Remote (OCSP) certificates or import a Remote (OCSP)<br />

certificate, go to VPN > Certificates > Remote. To view certificate details, select<br />

the View Certificate Detail icon in the row that corresponds to the certificate.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

374 01-30005-0203-20070830

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!