Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Web protection

If I upload a new certificate because it's just been renewed, and then select that certificate in an existing firewall rule for web protection, it automatically deletes all the domains I've associated and puts in the ones it's found in the certificate. This drives me absolutely crazy, because we use a wildcard certificate and have different rules for different sub-domains. I then have to setup all the subdomains all over again.

Can we please get a change so that selecting a different certificate from the "HTTPS Certificate" dropdown doesn't change anything in the "Domains" box?



This thread was automatically locked due to age.
Parents
  • Hi Stuart,

    Thank you for reaching out to Sophos Community.

    Also, for providing the software version and apologies for the experience.

    The Firewall's default behavior seems to pull out the domain from the certificate and overwrite the current.

    I'll be inquiring about your case with our internal team.

    Would it be possible to create a case at https://soph.so/SophosSupport so that it can further check?

    Also, kindly share with us the case # once created so that we can monitor it.

    For additional query, Can I have the following information?

    • Previous and new Certificates a wildcard?
    • How many WAF rules do you have?
    • The number of domains to be modified?

    Erick Jan
    Community Support Engineer | Sophos Technical Support
    Sophos Support Videos Product Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.

Reply
  • Hi Stuart,

    Thank you for reaching out to Sophos Community.

    Also, for providing the software version and apologies for the experience.

    The Firewall's default behavior seems to pull out the domain from the certificate and overwrite the current.

    I'll be inquiring about your case with our internal team.

    Would it be possible to create a case at https://soph.so/SophosSupport so that it can further check?

    Also, kindly share with us the case # once created so that we can monitor it.

    For additional query, Can I have the following information?

    • Previous and new Certificates a wildcard?
    • How many WAF rules do you have?
    • The number of domains to be modified?

    Erick Jan
    Community Support Engineer | Sophos Technical Support
    Sophos Support Videos Product Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.

Children