Fortinet white logo
Fortinet white logo

Cookbook

Creating an Intermediate CA on the FortiAuthenticator

Creating an Intermediate CA on the FortiAuthenticator

To create an Intermediate CA:
  1. On the FortiAuthenticator, go to Certificate Management > Certificate Authorities > Local CAs and select Import.
  2. Set Type to CSR to sign, enter a Certificate ID, and import the CSR file.

  3. Select the Certificate authority configured with the HSM from the dropdown menu, and set the Hash algorithm to SHA-256. Click OK.
  4. Once imported, you should see that the certificate has been signed by the FortiAuthenticator, showing a Status of Active, and with the CA Type of Intermediate (non-signing) CA.
  5. Highlight the certificate and select Export Certificate.
  6. This will save a .crt file to your local drive.

Creating an Intermediate CA on the FortiAuthenticator

Creating an Intermediate CA on the FortiAuthenticator

To create an Intermediate CA:
  1. On the FortiAuthenticator, go to Certificate Management > Certificate Authorities > Local CAs and select Import.
  2. Set Type to CSR to sign, enter a Certificate ID, and import the CSR file.

  3. Select the Certificate authority configured with the HSM from the dropdown menu, and set the Hash algorithm to SHA-256. Click OK.
  4. Once imported, you should see that the certificate has been signed by the FortiAuthenticator, showing a Status of Active, and with the CA Type of Intermediate (non-signing) CA.
  5. Highlight the certificate and select Export Certificate.
  6. This will save a .crt file to your local drive.