Did Not Open Ssl Content Identification But Visit The Website Prompts The Certificate Is Not Safe

|
  • 97
  • 6

Issue Description

Customer feedback to visit a bank website to indicate that the certificate is not secure.

Handling Process

1. Check online user confirmation that ssl content identification is not enabled.
2. Capture packet analysis and find that the certificate is going to access the domain name, and the request for access is rejected by the device. Figure:
3.After adding cacerts.digicert.com to Global Exclusion, visiting the bank’s website will not prompt the certificate to be unsafe.

Root Cause

PC access to some websites will obtain certificates from the public network instead of using local certificates, and some public network links are not excluded on the device.

Solution

Add the certificate provider’s website link to Global Exclusion.
Faisal Posted 25 Aug 2020 08:11
  
Thank you very much for the information ...
Faisal Posted 17 Oct 2020 10:38
  
Nice article ...
Faisal Posted 22 Dec 2020 07:15
  
Great info ...
Ellechar Lv4Posted 20 Jan 2021 15:46
  
Very nice infoooooooooooooooooooooooooooooo
Faisal Posted 23 Mar 2021 08:06
  
Very informative …
Faisal Posted 08 Jun 2021 17:19
  
Nice guidance ...

I want to write a case
Doc ID: 2509
Author: Newbie1212
Updated: 2019-12-21 12:53
Version: