This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Several Problems with SSL/TLS Inspection turned on (Without a defined Policy)

Hello there,

I reported some problems with SSL/TLS Inspection being turned on (Without any Policy defined at all) within the early access program of v18.
We did also troubleshoot a few of these Probems and some could be fixed before release of v18.

Unfortunatelly some remain, which forced me to currently disable SSL/TLS Inspection.

 

1. I'm using a messaging App called Threema. When I enable SSL/TLS Inspection I can still send and receive Text Messages through Threema but I'm unable to send or receive Images through Threema. The Image just won't send and no images will be received.

I started to troubleshoot this with Michael Dunn, but unfortunatelly I did not have many time and the Early Access Program ended, before we could troubleshoot it and it could be fixed.

Here is the Thread for reference:

https://community.sophos.com/products/xg-firewall/sfos-eap/sfos-v18-early-access-program/f/feedback-and-issues/118539/not-possible-to-send-images-with-threema-when-ssl-tls-inspection-is-enabled

Bug ID was: NC-56436

 

2. I'm using Aruba Instant On Accesspoints. (Previously was using Sophos Accesspoints, but unfortunatelly they lack of essentials features when controlled by a Sophos XG or Sophos UTM, but this is another story) These Accesspoints are controlled through a cloud console. (1 AP which is the master connects to this console) They need Ports 80, 443 and 123 to the internet.

After enabling SSL/TLS Inspection I will get problem with the Reporting of the APs to the Cloud. Traffic and/or Application Categories are monitored and the data is uploaded to the cloud.
When SSL/TLS inspection was enabled (without any policy to decrypt traffic) these applications are not shown anymore. There is alway 0 kb traffic. So the data can't be uploaded correctly.

If I disable SSL/TLS Inspection, everything is fine again. So enabling SSL/TLS Inspection must be the cause for this.

 

Now I would like to troubleshoot these 2 issues, so they can be fixed. :)

 

Bjoern



This thread was automatically locked due to age.