Farina Ahmed Posted 21 Aug 2023 13:56
  
One possible solution to this issue is to make sure that you have properly configured the SSL CA certificate and that you are using the same certificate in your NGAF security rule.

Checklist for troubleshooting SSL decryption issues on your NGAF Firewall 5100 with software version 8.0.47:

Check Logs: Examine firewall logs for SSL decryption error messages.

Certificates: Ensure valid SSL decryption certificates are installed.

Certificate Trust: Import and trust certificates on client devices.

SSL Policy: Verify SSL inspection policy settings and rules.

Cipher Suites: Confirm compatibility between firewall and server cipher suites.

Interception Bypass: Some sites prevent SSL interception (HPKP, HSTS).

Performance: Ensure firewall hardware handles decryption load.

Firmware Updates: Apply available updates or patches.

DNS Resolution: Check DNS settings for accurate domain resolution.

Troubleshooting Tools: Use built-in firewall tools for insights.

Support: Engage vendor support for specific guidance.

I Can Help:

Change

Moderator on This Board

0
2
4

Started Topics

Followers

Follow

67
14
3

Started Topics

Followers

Follow

3
0
2

Started Topics

Followers

Follow

1
131
3

Started Topics

Followers

Follow

Board Leaders