The Fortinet documentation to prevent certificate warnings says, regarding the Deep Inspection Policy,
In this policy, the web categories Health and Wellness, Personal Privacy, and Finance and Banking are excluded from SSL inspection by default. Applications that require unique certificates, such as iTunes and Dropbox, have also been excluded.
However, on my configuration, the Deep Inspection Policy does not have these exceptions enabled. Additionally, the addresses (see screenshot) like "Android," "AppStore," etc., are not in my configuration.
My questions, then, are:
[ol]Thanks for your help.
Fortigate 60C
v5.2.7,build718
Hello,
thoses adresses are manually created (it's an example) : you choose what you want to exempt from DPI
you have to create your own adress list based on what you want/need
2 FGT 100D + FTK200
3 FGT 60E FAZ VM some FAP 210B/221C/223C/321C/421E
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1742 | |
1114 | |
760 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.