Jump to content

Recommended Posts

Posted

Morning folks,

 

Our smoothwall appears to be dishing out the wrong certificate on the Getmitm page (the root CA rather than the HTTPS decryption certificate). I can't for the life of me find out how to change it to the decryption cert, nor can I find documentation on that other than something saying they're interchangeable!

Is this possible, or am I going to need to re-create everything? :(

Posted
The root CA is the correct one - that can validate certificate created by the secondary https ca used for inspection. You can set the smothwall to use the root ca for inspection instead of the secondary CA as well if you like that better :)
Posted (edited)
The root CA is the correct one - that can validate certificate created by the secondary https ca used for inspection. You can set the smothwall to use the root ca for inspection instead of the secondary CA as well if you like that better :)

 

That was my understanding from the documentation, doesn't seem to be behaving though :( An example, going to lloydsbank.com, certificate issued by Smoothwall-HTTPS-INterception-Certificate-Authority which is apparently not trusted and the page flags up as unsecure as a result. Certificate installed from the GetMITM page however is the default-root-certificate-authority, verified.

 

Edit - wondering if this is iDevice/Safari specific as my android doesn't appear to have the same issues on Chrome.

Edited by synaesthesia

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...