- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
SSL Deep Inspection not working with Chrome and Edge browsers and web filtering
I've configured a policy with SSL Deep Inspection for my company and installed the Fortigate CA certificate on our devices in order to now be shown the certificate warning. However (on both mac and windows devices) when using Firefox it does seem to work correctly and the certificate shown by the browser is the Fortigate's, though when using either Chrome or Edge the certificates shown in the browser.
I have even a problem with web filtering I'm blocking social media and still have access to all social media
Did anyone have an idea what is the problem?
Thank you
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The difference is that Firefox by default uses it's own trusted store, Edge and Chrome will use the trust store of the OS. Try to import the FGT certificate to the trusted root store of the OS.
Try to block the social media by creating an Application Control policy.
If you have found a solution, please like and accept it to make it easily accessible for others.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello @ebilcari Thank you for reply
The Application Control policy worked just fine. What do you mean by import the FGT certificate to the trusted root store of the OS. OS?
Thanks
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I was referring to the Trusted root store of the operating system (Mac or Win), for windows the FGT certificate should be imported here:
For MacOS should be similar.
If you have found a solution, please like and accept it to make it easily accessible for others.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
 
Doesn’t work I don’t understand!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Make sure you select the root certificate from the chain and you need to install it as 'Local Machine' and 'Trusted Root Certification Authorities', do not go with default options of the wizard.
If you have found a solution, please like and accept it to make it easily accessible for others.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes I make sure that as a local machine
and 'Trusted Root Certification Authorities' And still doesn’t work:weary_face:
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hello @AHJARR ,
If the web filter is not able to block the expected traffic using Chrome or Microsoft Edge. You can go through the article >> https://community.fortinet.com/t5/FortiGate/Technical-Tip-Web-filter-is-not-blocking-websites-on-Goo...
to perform the steps as recommended and check again the behaviour.
Regards,
