Skip to main content
fortega
Staff
Staff
January 30, 2017

Exempting Outlook from SSL inspection.

  • January 30, 2017
  • 0 replies
  • 11197 views
Description
When enabled SSL deep inspection in a policy is expected that some sites or applications don't work correctly.

To avoid problems with Outlook is recommended configure a set of exemption in the SSL deep inspection profile.

Solution
Here is a set of exemptions that should be created in the FGT.

*.office.com 
*.office.net 
*.office365.com 
*.live.com 
*.microsoft.com 
*.windows.net 
*.outlookgroups.ms 
*.microsoftonline-p.net 
*.microsoftonline.com 
*.windowsazure.com 
*.cloudapp.net 
*.oaspapps.com 
*aadrm.com 
*azure.com 
*azurerms.com 
*cloudappsecurity.com 
*gfx.ms 
*hockeyapp.net 
*msft.net 
*onestore.ms 
*onmicrosoft.com 
*microsoftonline-p.com 

wildcardFQDN.PNG

After create this set of exemptions Outlook should be work without problem.