This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SSL CA Certificate Installation not working

I followed the instruction here to download and trust the certificate on my computer community.sophos.com/.../123048 However, Chrome, Edge and IE all report there is a problem with the certificate. I've started over, regenerated the certificate 2 times etc with the same result. Any ideas?


This thread was automatically locked due to age.
Parents
  • OK, never mind. The issue is my own ignorance. I was getting the error when I used https://172.16.165.16, but I do not get the error if I use http://172.16.16.16. If I turn on decrypt and scan HTTPS and go to sites like Facebook that use https, I do not get a certificate error.

    So how does one get rid of the error if you connect to the web GUI for XG using https? Or does it just not work that way?

    Thanks 

  • I get the same error after following the document. When I access the admin portal at https://x.x.x.x:4444 I get this even though the CA has been added to the local computer. same issue with Chrome & IE.

    Is there something I've missed ?

  • Paul,

    the problem is that the CN (Common Name) issued inside the Certificate must match the url you are trying to reach.

    In order to avoid the error you should generate a certificate with the right CN and use the value entered into CN to access the Firewall, User Portal, etc...

    From the screen, also you did not import the CA correctly.

    I advise you to upgrade to v16, where XG allows you to set hostname. Once the hostname reflects your needs (FQDN for example) you can generate the right certificate.

    Hope this help!

  • Hi lferrara,

    My XG v16 has same issue. and i can't generate a Certification with right CN. 

    Is it possible to generate a SSL Certification on the XG? 

    If so, Can you guide me how can i generate a Certification with right CN?

    Thanks, 

     

Reply Children