Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Purge SSL Certificates from cache

Hello,

I have a sophos xg appliance with https scanning enabled.

The appliance seems to cache website's certs. Sometimes if the maintainers of website misconfigure SSL settings, a wrong certificate is served by the webserver and this gets cached by sophos.

My problem is, how can I clear the cache without rebooting the appliance?

I referred to below articles and they require ssh access also suggest rebooting but we cannot afford to reboot the appliance. Is there an API or bash script that we can trigger for purging specific certs from cache?

Note: I am a developer and I don't have full access to sophos. It's difficult to have the IT team do the steps arbitrarily, so an API mechanism would be the best option.

https://community.sophos.com/sophos-xg-firewall/f/discussions/102313/https-scanning-where-is-the-certificate-cache-for-external-websites

Thanks!



This thread was automatically locked due to age.