Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
smecio
New Contributor II

Setting SSL/SSH inspection profile causes most websites not accessible

As the title says, switching between certificate-inspection, deep-inspection and custom-deep-inspection does not help load most common & reputable (both international and Vietnamese) websites on either Microsoft Edge or Google Chrome, such as:

  • office.com
  • vietcombank.com.vn
  • bidv.com.vn
  • vnexpress.net

Setting the SSL/SSH inspection profile to no-inspection makes it work with one exclamation on the policy rule.

Screenshot 2024-04-23 at 20-54-18 FortiGate - FortiGate-100F.png

Is there any idea about this?

1 Solution
xshkurti
Staff
Staff

@smecio 

Try to change inspection mode in firewall policy from Flow mode to Proxy mode

View solution in original post

2 REPLIES 2
xshkurti
Staff
Staff

@smecio 

Try to change inspection mode in firewall policy from Flow mode to Proxy mode

smecio
New Contributor II

Changing to flow mode works for me. Thanks!!!

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors