This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Massive problems after activate SSL scanning

Hi,

now it's time to migrate from UTM to XG firewall, so i did it ;)

Everthing work's, only not HTTPS scanning :/

Of course, i've added my application certificate to my devices, when it's possible (PC, Notebook, Android Devices ( here i've added it to Wlan and VPN + APPS)) but i'm still get problems.

For testing i have only https scanning and decrypt activated without any rules. On my pc and notebook everthing works fine but my android devices drives me crazy....

 Almost all my apps (google home, amazon, ebay, esprit, imdb .....) getting no connection after activate ssl scanning. If i setting exceptions for the app they working again.

Is exceptions the only way to get apps working again?



This thread was automatically locked due to age.
Parents Reply
  • The problem is not UTM / XG (works in the same way right now). 

    Its the method how to intercept the client. 

    https://community.sophos.com/kb/en-us/132997

    Basically many applications on all platforms are not build to work with a decryption. I do not have any android device, so i am not quite sure, but on other devices it depends. 

    Its like firefox and Chrome for example on Windows. Chrome uses the Windows certificates store, so you can push the certificate to the client via GPO and it works fine. But firefox has its own store or even worse, some applications have their own store without any configuration possibilities.

    There will be some changes in the future in V18 - So stay tuned. 

Children