I've got a problem with the end-user pages. I'm talking about the settings at Web Protection -> Filtering Options -> Misc -> Certificate for End-User pages.
From what I remember, it worked fine when I was using the UTM as the DNS/DHCP server. However, I've moved DNS off to another machine in the network and now this doesn't work correctly.
So if I turn off the "use custom certificate" box, then regular HTTP sites that get block gives a correct content blocked page using passthrough.fw-notify.net. However, HTTP sites give a broken blocked page without formatting or graphics.
If I turn on the "use custom certificate box and put my domain (carpenter.cx) there, and select a certificate made for passthrough.carpenter.cx, both HTTP and HTTPS break, although the page source shows it is using the correct hostname that I set.
I have a CNAME in my DNS server from passthrough.carpenter.cx to the hostname of the UTM, which does resolve. The only other bit of info that may make a difference is that I run the WebAdmin interface on a different port than the default.
What am I missing on the DNS side? Is there something else I need to be setting in the firewall or somewhere that allows this to work correctly?
Thanks
This thread was automatically locked due to age.