Hi everyone, i'm having trouble using the certificates we have installed in browsers to authenticate to some web services. The endpoint is blocking usage, making usage impossible.
Has anyone gone through something similar?
Sophos UTM: Decommissioning of obsolete URL categorization services CFFS.Click here for important info.
Hi everyone, i'm having trouble using the certificates we have installed in browsers to authenticate to some web services. The endpoint is blocking usage, making usage impossible.
Has anyone gone through something similar?
Hi Anderson Feitoza ,
Thank you for reaching out to the Sophos Community Forum.
Could you provide more details on how the endpoint is blocking the usage of the digital certificate, please? If you have any screenshots related to this, that would help us to advise further.
Thank you.
Why should endpoint "block certificates" ?
Show us some screenshots of such an error message, please!
Mit freundlichem Gruß, best regards from Germany,
Philipp Rusch
New Vision GmbH, Germany
Sophos Silver-Partner
If a post solves your question please use the 'Verify Answer' button.
As this is the endpoint forum, I assume you are maybe seeing an issue with the following endpoint feature as found under Threat Protection policy option in Sophos Central?
Does it work with that option disabled for a test client?
If that helps, if you re-enable that decryption, then under:
https://cloud.sophos.com/manage/endpoint/config/settings/ssl-tls-decryption
add the problem site as an exclusion. Does that work also?
Thanks.
When I enable Endpoint protection, digital certificates no longer appear installed on my computer when I need them on the web. I've already tried disabling SSL/TLS decoding on HTTPS sites, but it still doesn't work. When I try to access with a digital certificate the certificate not found message. Has anyone ever experienced this?
Hi colline,
I've merged your post with an existing one exhibiting the same issue. Could you try adding an exclusion to SSL/TLS scanning to see if this has an effect on the results you're seeing?
You may also want to try turning off the "Network Threat Protection" feature from the local policy override to test.