Hi All,
I have a curious issue with a couple of Macs in our office. When I set the proxy in system network proxy to our Sophos Web Appliance I cannot connect to the Apple App Store. I can connect to the iTunes store
I get the following error on the app store.
"App Store cannot verify secure connection with the App Store"
Would you like to connect anyway?
If I select 'continue' the screen will flash black and grey while it fails to connect.
If I check my logs I can see it allowing it through with no blocks, but it still fails.
https://swcdnlocator.apple.com:443 | 2013/10/25 09:29 PM | Allowed | |
https://swscan.apple.com:443 | 2013/10/25 09:29 PM | Allowed | |
https://swdist.apple.com:443 | 2013/10/25 09:28 PM | Allowed (19) | |
https://swdist.apple.com:443 | 2013/10/25 08:57 PM | Allowed (19) | |
https://swcdnlocator.apple.com:443 | 2013/10/25 08:57 PM | Allowed | |
https://swscan.apple.com:443 | 2013/10/25 08:57 PM | Allowed | |
https://xp.apple.com:443 | 2013/10/25 08:57 PM | Allowed (2) | |
https://client-api.itunes.apple.com:443 | 2013/10/25 08:56 PM | Allowed (20) | |
https://itunes.apple.com:443 | 2013/10/25 08:56 PM | Allowed (9) | |
https://securemetrics.apple.com:443 | 2013/10/25 08:56 PM | Allowed (2) | |
https://metrics.mzstatic.com:443 | 2013/10/25 08:56 PM | Allowed (2) | |
https://s.mzstatic.com:443 | 2013/10/25 08:56 PM | Allowed (38) | |
https://itunes.apple.com:443 | 2013/10/25 08:55 PM | Allowed (3) | |
https://s.mzstatic.com:443 | 2013/10/25 08:55 PM | Allowed (69) | |
https://swdist.apple.com:443 | 2013/10/25 08:54 PM | Allowed (19) | |
https://swcdnlocator.apple.com:443 | 2013/10/25 08:54 PM | Allowed | |
https://swscan.apple.com:443 | 2013/10/25 08:54 PM | Allowed |
I have setup the following to try and allow it through -
Additional Site List
apple.com
Globally Allowed Site
Trusted
Ive also added in an additional policy with the above allowing the IP address of the Mac's (so authentication is not needed)
I do not get this issue using a Cisco Ironport.
Any help is appreciated!
Thanks,
Milton
This thread was automatically locked due to age.