Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Decrypt HTTPS Breaks JAVA Apps - Exceptions Useless

Having an issue at a client where we installed an XG firewall, a Java application that has no problem outside the firewall refuses to load, Java complains of SSL certificate errors. Have configured exceptions for the site that hosts the app but it still refuses to load. The workaround for now is to add the Appliance SSL Cert to the Java Certificate Store but that is an annoying requirement when simply creating an exception should be enough. Not to mention that every time Java is updated the certificate needs to be imported again.  Below is a shortcut that downloads the JNLP file which launches the app in case anyone would like to attempt to replicate the issue, just click the Launch Gradebook button on the page, save the file and run it with javaws if your system doesn't automatically run the file.

 

 

UPDATE: So the easiest workaround for this is to create a firewall network rule with the destination set as both the IP address and FQDN of the site hosting the Java app making sure NOT to check Decrypt and Scan HTTPS as that is what is breaking Java even though I have exceptions configured for both the IP and FQDN.



This thread was automatically locked due to age.