This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Disable certificate authority web proxy

I am running the XG firewall as a direct proxy in gateway mode and it is working correctly for HTTP traffic.  The rule I created for the web proxy does not have any web filtering and the Decrypt and Scan HTTPS option is disabled. However, it gives me an error "Your connection is not private " when I try to open HTTPS sites in Google Chrome.  It has the NET::ERR_CERT_AUTHORITY_INVALID message and clicking the advanced button shows that the website is using HSTS and there's no way around that.  If I don't want to import the certificate authority into my browser is it possible to disable the certificate authority?  



This thread was automatically locked due to age.
Parents Reply Children
  • This is an issue solved long ago.  All boxes should have

    system application_classification microapp-discovery off

     

    If you are having an issue, it could be a different cause.  I recommend opening a new thread and describe the symptoms of your problem.

     

    EDIT:  My reply was in regards to the thread about microapp-discovery, not about the original post about HSTS.  In any case, please open a new thread.