Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG generated SSL decryption certificate is using SHA-1 digest

Hello,

SHA-1 algorythm has been deprecated. XG still generates this kind of certificates for SSL scanning. The browsers now, mark the connection as insecure for this reason.

Is this behaviour of the appliance configurable? WIll it be corrected?



This thread was automatically locked due to age.
Parents Reply Children
  • Hello,

    thank you for replying. It should not be necessary to raise a feature request for this. It should be compulsory. We spend a lot of time training users to watch alerts from the browsers, and then we put them in the condition to be confused. Anyway I'll follow your suggestion.

    When will the burden of Astaro, Cyberoam, Sophos will end up? The XG firewall is a Cyberoam appliance, and I should push a feature request to Astaro, but when looking for documentation I'd better to browse Cyberoam old pages, seen that the official docs supplied by the Sophos sites, are really.. Incredible.

    Bye

    Max