Skip to main content
Micky182
New Member
April 23, 2021
Question

Flow mode or Proxy Mode on Email Inspection?

  • April 23, 2021
  • 1 reply
  • 4700 views

Hello Guys,

 

i need an clarification about using proxy mode with deep inspection on emailfiltering.

I have and internal Exchange Server and today most of the traffic on port 25 use SSL.

So i want to switch from Flow Mode to proxy mode and inspect all traffic, but when i tried to do i wasn't to be able to recieve emails.

I think that FGT use only built-in SSL certificate to inspect traffic and Exchange cannot recognize this certificate. Need i to import this certificate in Exchange server or is possible to Inspect port 25 with our public cert like "mail.domain.com" ?

 

thank you very much for any hints!

1 reply

Markus
New Member
April 23, 2021

Hi, Import your "mail.domain.com" cert into Fortigate and define the SSL profile. Thats the way it works. https://docs.fortinet.com/document/fortigate/6.2.0/cookbook/55107/protecting-an-ssl-server

 

Best

Micky182
Micky182Author
New Member
April 27, 2021

Thank you very much Markus!

Yurisk
SuperUser
SuperUser
April 28, 2021

Additionally, if you want to apply AntiSpam profile to the inspected traffic to filter for spam, you have to use Proxy mode for the policy, not flow one.