Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Security Certs issues just started

I have Https scanning and it has been working fine for a number of weeks. I also placed an email Business App policy in place and had it scan all emails. Everything was fine, despite a few issues when Outlook would fail to download emails for the first 2 times and then would work.

This morning, when I opened Outlook I got an Internet Security Warning saying the signature of the certificate cannot be verified ( I get this now for all three email domains I collect my email from ) If I view the certificate it is using for one it says it was issued to pop3.virginmedia.com by Sophos SSL CA_ (my Sophos XG device)  and does similar for the other 2 domains.

First question is why has this just started as nothing has changed on my PC or Sophos, 2 when I installed this cert and the other 2, my emails worked, my Https scanning stopped and could no longer get the secure web pages. SSL pages would then come through with their own SSL certs rather than the Sophos.

In the end I removed all the certs from my PC, downloaded the main SSL CA cert from my device and https scanning and Secure pages worked again. however, I still get this message on my emails.

Any ideas please, the whole SSL thing is driving me nuts and the fact it was working and has now stopped is quite annoying

Nick



This thread was automatically locked due to age.
Parents
  • Hi Nick,

    Did you selected the correct TLS certificate for secure SMTP email communication?

    Please refer the link here:

    community.sophos.com/.../123273

    Thanks

  • ok, found the certificate cause, option to allow invalid security cert was ticked under POP and IMAP TLS section. not sure how this has changed or what could have cause the appliance to start issuing its own certs.

    Also, the first email address it checked still fails first time. 4 email addresses, the first hangs, the 2nd, 3rd, and 4th go through fine, I click send and receive again and the failed one works without issue. This is for POP receive only, SMTP goes through on this account first time without issue.

    Any ideas as I am not sure where to start looking to try and resolve this?

Reply
  • ok, found the certificate cause, option to allow invalid security cert was ticked under POP and IMAP TLS section. not sure how this has changed or what could have cause the appliance to start issuing its own certs.

    Also, the first email address it checked still fails first time. 4 email addresses, the first hangs, the 2nd, 3rd, and 4th go through fine, I click send and receive again and the failed one works without issue. This is for POP receive only, SMTP goes through on this account first time without issue.

    Any ideas as I am not sure where to start looking to try and resolve this?

Children