Fortinet Document Library

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

CLI Reference

system certificate

Use these commands to view certificate configuration.

Syntax

get system certificate ca [certificate name]

get system certificate crl [crl name]

get system certificate local [certificate name]

get system certificate oftp [certificate name]

get system certificate ssh [certificate name]

Example

This example shows the output for get system certificate local Fortinet_Local:

name : Fortinet_Local

password : *

comment : Default local certificate

private-key :

certificate :

Subject: C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = FortiAnalyzer, CN = FAZ-VM0000000001, emailAddress = support@fortinet.com

Issuer: C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = Certificate Authority, CN = fortinet-subca2001, emailAddress = support@fortinet.com

Valid from: 2017-08-30 26:03:83 GMT

Valid to: 2056-01-19 33:14:77 GMT

Fingerprint: 68:--:--:--:--:--:--:--:--:--:--:--:--:--:7C

Root CA: No

Version: 3

Serial Num:

38:f9

Extensions:

Name: X509v3 Subject Key Identifier

Critical: no

Content:

EC:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:94

Name: X509v3 Authority Key Identifier

Critical: no

Content:

keyid:98:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:D7

DirName:/C=US/ST=California/L=Sunnyvale/O=Fortinet/OU=Certificate Authority/CN=fortinet-ca2/emailAddress=support@fortinet.com

serial:20:01

Name: X509v3 Basic Constraints

Critical: yes

Content:

CA:FALSE

Name: X509v3 Key Usage

Critical: yes

Content:

Digital Signature

csr :

system certificate

Use these commands to view certificate configuration.

Syntax

get system certificate ca [certificate name]

get system certificate crl [crl name]

get system certificate local [certificate name]

get system certificate oftp [certificate name]

get system certificate ssh [certificate name]

Example

This example shows the output for get system certificate local Fortinet_Local:

name : Fortinet_Local

password : *

comment : Default local certificate

private-key :

certificate :

Subject: C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = FortiAnalyzer, CN = FAZ-VM0000000001, emailAddress = support@fortinet.com

Issuer: C = US, ST = California, L = Sunnyvale, O = Fortinet, OU = Certificate Authority, CN = fortinet-subca2001, emailAddress = support@fortinet.com

Valid from: 2017-08-30 26:03:83 GMT

Valid to: 2056-01-19 33:14:77 GMT

Fingerprint: 68:--:--:--:--:--:--:--:--:--:--:--:--:--:7C

Root CA: No

Version: 3

Serial Num:

38:f9

Extensions:

Name: X509v3 Subject Key Identifier

Critical: no

Content:

EC:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:94

Name: X509v3 Authority Key Identifier

Critical: no

Content:

keyid:98:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:--:D7

DirName:/C=US/ST=California/L=Sunnyvale/O=Fortinet/OU=Certificate Authority/CN=fortinet-ca2/emailAddress=support@fortinet.com

serial:20:01

Name: X509v3 Basic Constraints

Critical: yes

Content:

CA:FALSE

Name: X509v3 Key Usage

Critical: yes

Content:

Digital Signature

csr :