The Fortinet documentation to prevent certificate warnings says, regarding the Deep Inspection Policy,
In this policy, the web categories Health and Wellness, Personal Privacy, and Finance and Banking are excluded from SSL inspection by default. Applications that require unique certificates, such as iTunes and Dropbox, have also been excluded.
However, on my configuration, the Deep Inspection Policy does not have these exceptions enabled. Additionally, the addresses (see screenshot) like "Android," "AppStore," etc., are not in my configuration.
My questions, then, are:
[ol]Thanks for your help.
Fortigate 60C
v5.2.7,build718
Hello,
thoses adresses are manually created (it's an example) : you choose what you want to exempt from DPI
you have to create your own adress list based on what you want/need
2 FGT 100D + FTK200
3 FGT 60E FAZ VM some FAP 210B/221C/223C/321C/421E
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.