I'm a new XG user, currently trying to do some testing before moving my company from a SonicWall to our new XG 230 appliance. I've configured the firewall and setup a small subset of computers on it while the remainder of our corporate network continues to function using the SonicWall. Today, I tried to move our WiFi subnet over to perform more testing and immediately ran into a problem trying to get email from our on-prem Exchange. Mobile clients (iPhones) get a certificate mismatch for "SophosApplianceCertificate...", which seems to indicate that HTTPS scanning has been enabled, but as far as I can tell it has not.
I only have a few firewall rules, and none of them have HTTPS scanning enabled. Desktop clients running through the XG do not get this message, even though they are using the same firewall rule (but a different subnet and different physical port). I've looked high and low and can't figure out how this is happening.
Does anyone have any ideas?
This thread was automatically locked due to age.