This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Decrypt and Scan HTTPS invalidates HTTPS certificates

I suppose I need to better understand Decrypt and Scan HTTPS Malware Scanning.  I noticed that when browse HTTPS site  the cert is replaced by the Sophos Cert.  So, my question is why and how to troubleshoot. If I turn Decrypt off then all is fine.



This thread was automatically locked due to age.
Parents Reply Children
  • Hello,

     

    Sorry, I have been away. Between work and school, I have not had much free time to be as involved in the forums.  (taking a prep class to renew my CompTia Security Plus Cert  / Ethical Hacking class).

    I did manage to re-download the Cert from UTM and did Get it installed on the Windows computers, and I think installed in a few locations that you can install a cert on Windows and things are working. 

    Again to everyone who was able to provide things to check as well as all the wonderful detail on the topic, I thank you all. I am glad to see the thread also of value to others.

    Sincerely Chad

  • We're talking about Sophos XG to implement safe search. For it to be implemented well you must enable HTTPs scanning, adding CNAMEs in DNS is different.

  • GonFreecs said:

    We're talking about Sophos XG to implement safe search. For it to be implemented well you must enable HTTPs scanning, adding CNAMEs in DNS is different.

     

     
    Hi GonFreecs,
     
    I work for Sophos, with the XG, and I am well aware of what we support.  We support Bing and Google with no HTTPS scanning.  Internally are using the CNAME override to do this, but the user won't know this.
     
    Yahoo SafeSearch requires HTTPS scanning.  The Bing and Google Enforce Additional Image Filters require HTTPS scanning.