Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Certificate Error - Same sites every day.

Hi!

I´m facing an issue that I could not resolve. 

I have and XG330 with SFOS 19.0.1 MR-1-Build365. 

I use the firewall as a web proxy. Microsoft domain services enviroment.

It´s weird that it´s working any webpage without any problem and suddenly, the whole google suit stop working. Sometimes, bank sites like https://www.bancociudad.com.ar

When the user tries to access, the tipical error shows up:

"NET::ERR_CERT_AUTHORITY_INVALID"

So, I deployed the Appliance Certificate to the clients. But it didnt work.

The issue resolves itself after 30 minutes, more or less. I mean, I do not touch nothing and suddenly, all start working again without problem.

Today, I look for the certificate and it´s not my appliance certificate:



I dont know this certificate.


Here is the Rule in one of my networks:



I also manage an UTM SG330 in a different enviroment and I do not have this weird behavior

Some advices? Any help?

Thanks



This thread was automatically locked due to age.
Parents Reply
  • True, can you check under the web > general settings > HTTPS scanning certificate authority (CA) which certificate is used 
    and also can you validate that under the Certificate > Certificate authorities  >   Default CA is cert is properly filled ?

    Then after under the FW rule for the internet traffic > can share a screenshot > Security features enabled ? 

    Thanks & Regards,
    _______________________________________________________________

    Vivek Jagad | Team Lead, Global Support & Services 


    Sophos Community | Product Documentation | Sophos Techvids | SMS
    If a post solves your question please use the 'Verify Answer' button.

Children