<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Https inspection tip in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Https-inspection-tip/m-p/219144#M41878</link>
    <description>&lt;P&gt;In reference to the block page, where would you change the certificate used for that?&lt;/P&gt;
&lt;P&gt;Based on the name that I see, it would be my cluster IPsec VPN certificate, which would effect my certificate VPN tunnels.&lt;/P&gt;
&lt;P&gt;Edit - Oh, I see it under the UserCheck section. Nevermind!&lt;/P&gt;</description>
    <pubDate>Fri, 28 Jun 2024 18:45:27 GMT</pubDate>
    <dc:creator>CaseyB</dc:creator>
    <dc:date>2024-06-28T18:45:27Z</dc:date>
    <item>
      <title>Https inspection tip</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Https-inspection-tip/m-p/219139#M41877</link>
      <description>&lt;P&gt;Ola girls and boys,&lt;/P&gt;
&lt;P&gt;Happy Friday &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Figured would sare this tip, as I see people asking me this constantly. So, once ssl inspection is configured and you can refer to my lab guide below, if you are using self generated certs in the lab, you need to export as per below screenshot and add the certs in trusted root store on the machine you are testing, along with actual https inspection cert you export from the gateway properties, so does not show site is not secure when its blocked. In layman's terms, as they say, whole certficate chain has to be trusted.&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/Https-inspection-lab-guide/m-p/214429#M40929" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/Security-Gateways/Https-inspection-lab-guide/m-p/214429#M40929&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26519iD2EA92DFC1EEEADB/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="MrBeanThumbsUpGIF.gif" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26520i5EE19B73359E6C7E/image-size/medium?v=v2&amp;amp;px=400" role="button" title="MrBeanThumbsUpGIF.gif" alt="MrBeanThumbsUpGIF.gif" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 28 Jun 2024 18:01:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Https-inspection-tip/m-p/219139#M41877</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-06-28T18:01:03Z</dc:date>
    </item>
    <item>
      <title>Re: Https inspection tip</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Https-inspection-tip/m-p/219144#M41878</link>
      <description>&lt;P&gt;In reference to the block page, where would you change the certificate used for that?&lt;/P&gt;
&lt;P&gt;Based on the name that I see, it would be my cluster IPsec VPN certificate, which would effect my certificate VPN tunnels.&lt;/P&gt;
&lt;P&gt;Edit - Oh, I see it under the UserCheck section. Nevermind!&lt;/P&gt;</description>
      <pubDate>Fri, 28 Jun 2024 18:45:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Https-inspection-tip/m-p/219144#M41878</guid>
      <dc:creator>CaseyB</dc:creator>
      <dc:date>2024-06-28T18:45:27Z</dc:date>
    </item>
    <item>
      <title>Re: Https inspection tip</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Https-inspection-tip/m-p/219147#M41879</link>
      <description>&lt;P&gt;Thats right.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26521iC643016FF2C0DDF2/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 28 Jun 2024 18:46:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Https-inspection-tip/m-p/219147#M41879</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-06-28T18:46:56Z</dc:date>
    </item>
    <item>
      <title>Re: Https inspection tip</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Https-inspection-tip/m-p/236144#M45791</link>
      <description>&lt;P&gt;Hey guys,&lt;/P&gt;
&lt;P&gt;I know its been few months since I posted this, but since people asked me to upload short video about it, here it is.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;div class="lia-vid-container video-embed-center"&gt;&lt;div id="lia-vid-6366182776112w960h540r514" class="lia-video-brightcove-player-container"&gt;&lt;video-js data-video-id="6366182776112" data-account="6058022097001" data-player="default" data-embed="default" class="vjs-fluid" controls="" data-application-id="" style="width: 100%; height: 100%;"&gt;&lt;/video-js&gt;&lt;/div&gt;&lt;script src="https://players.brightcove.net/6058022097001/default_default/index.min.js"&gt;&lt;/script&gt;&lt;script&gt;(function() {  var wrapper = document.getElementById('lia-vid-6366182776112w960h540r514');  var videoEl = wrapper ? wrapper.querySelector('video-js') : null;  if (videoEl) {     if (window.videojs) {       window.videojs(videoEl).ready(function() {         this.on('loadedmetadata', function() {           this.el().querySelectorAll('.vjs-load-progress div[data-start]').forEach(function(bar) {             bar.setAttribute('role', 'presentation');             bar.setAttribute('aria-hidden', 'true');           });         });       });     }  }})();&lt;/script&gt;&lt;a class="video-embed-link" href="https://community.checkpoint.com/t5/video/gallerypage/video-id/6366182776112"&gt;(view in My Videos)&lt;/a&gt;&lt;/div&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Dec 2024 13:53:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Https-inspection-tip/m-p/236144#M45791</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-18T13:53:05Z</dc:date>
    </item>
  </channel>
</rss>

