Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
HA
Contributor

Application Control for HTTPS NOT working through proxy

Hello, I have a problem with the application Control with SSL session through a proxy. Layout: Client-->Fortigate->SQUID proxy(listening on port 8080). Application Control is working fine (applications are blocked) for HTTP traffic going through the proxy. AV, URL Filtering is also working fine (traffic blocked) for HTTPS traffic going through the proxy. Application Control is NOT working fine (applications are NOT blocked) for HTTPS traffic going through the proxy. In the protocol options, I have the following config HTTP Port : 80, 8080 HTTPS Port : 443, DEEP Scanning Enable. FG200B running MR2P8 What' s the problem ? Regards, Hedi
4 REPLIES 4
bmann
New Contributor

I would try this: HTTP Port : 80 HTTPS Port : 443,8080 DEEP Scanning Enable. But do not know, never tested this.
HA
Contributor

Hello, I have already try it. Normally, it means that Application Control will not be enable for HTTP traffic...Not good ! When enabled with this config on my device, all traffic seems to be block by the FG... Other idea ? Regards, Hedi
bmann
New Contributor

Try this: config firewall profile-protocol-options edit " profile" config http set inspect-all enable end And try it with port config as wrote above.
HA
Contributor

Hello, I upgraded to MR3P1 and it works now... config firewall profile-protocol-options edit " SCAN-ENCRYPTED" config http set port 80 set port 8080 set options clientcomfort no-content-summary chunkedbypass unset post-lang end config https set port 443 set options clientcomfort allow-invalid-server-cert no-content-summary unset post-lang set deep-scan enable end With the config with MR2P8, application control was not working... Thanks for your help. Regards, Hedi
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors