SSL/SSH profile certificate handling changes (373835)
In order to support DSA and ECDSA key exchange (in addition to RSA) in SSL resign and replace mode, CLI commands for deep-inspection have changed. The certname command in ssl-ssh-profile has been removed.
To select from the list of available certificates in the system, use the CLI below.
edit deep-inspection set server-cert-mode re-sign set certname-{rsa | dsa | ecdsa}
Having trouble configuring your Fortinet hardware or have some questions you need answered? Check Out The Fortinet Guru Youtube Channel! Want someone else to deal with it for you? Get some consulting from Fortinet GURU!