list_certificates
List local and CA certificates to inspect key type and size, validity, and usage flags, flagging weak RSA keys under 2048 bits. Bundled public CAs appear only when include_bundle is true.
Instructions
List local and CA certificates with key type and size, validity and usage flags. Certificates with RSA keys under 2048 bits are flagged weak: FortiGate-VM evaluation licenses generate 512-bit factory certificates. Bundled public CAs are omitted unless include_bundle is true.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| vdom | No | VDOM (default: FORTIGATE_VDOM, usually root) | |
| name_contains | No | Only certificates whose name contains this text | |
| include_bundle | No | Include the ~150 bundled public CAs |