<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: HTTPS Inspection outbound certificate problem in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/HTTPS-Inspection-outbound-certificate-problem/m-p/33109#M6932</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If I understand correct you are trying to use a certificate that was issued for the security gateway itself from a CA in https inspection.&lt;/P&gt;&lt;P&gt;The certificate that need to be used for https inspection should be class CA or sub CA or otherwise you need to generate a certificate issued from the check point internal certificate itself and then distribute it to the client and use that certificate in the outbound inspection this can be done from the https section of the gateway &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 01 Mar 2018 13:39:50 GMT</pubDate>
    <dc:creator>Marco_Valenti</dc:creator>
    <dc:date>2018-03-01T13:39:50Z</dc:date>
    <item>
      <title>HTTPS Inspection outbound certificate problem</title>
      <link>https://community.checkpoint.com/t5/General-Topics/HTTPS-Inspection-outbound-certificate-problem/m-p/33108#M6931</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a .p12 certificate that has been generated for the FW cluster with the full chain of CAs included.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I use this for the platform portal I have no issues and when I view the certificate I see the full path:&lt;/P&gt;&lt;P&gt;&lt;IMG alt="Portal Certificate" class="image-1 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/63391_Portal.PNG" style="height: auto;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I use the same .p12 certificate for HTTPS inspection and view the certificate There is an issue:&lt;IMG alt="HTTP inspection" class="image-2 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/63392_HTTPS.PNG" style="height: auto;" /&gt;&lt;/P&gt;&lt;P&gt;Is there anything specific about HTTPS inspection that could be causing this issue? It is exactly the same .p12 file that is being used for both.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Many thanks,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 01 Mar 2018 13:22:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/HTTPS-Inspection-outbound-certificate-problem/m-p/33108#M6931</guid>
      <dc:creator>Michael_Horne</dc:creator>
      <dc:date>2018-03-01T13:22:34Z</dc:date>
    </item>
    <item>
      <title>Re: HTTPS Inspection outbound certificate problem</title>
      <link>https://community.checkpoint.com/t5/General-Topics/HTTPS-Inspection-outbound-certificate-problem/m-p/33109#M6932</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If I understand correct you are trying to use a certificate that was issued for the security gateway itself from a CA in https inspection.&lt;/P&gt;&lt;P&gt;The certificate that need to be used for https inspection should be class CA or sub CA or otherwise you need to generate a certificate issued from the check point internal certificate itself and then distribute it to the client and use that certificate in the outbound inspection this can be done from the https section of the gateway &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 01 Mar 2018 13:39:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/HTTPS-Inspection-outbound-certificate-problem/m-p/33109#M6932</guid>
      <dc:creator>Marco_Valenti</dc:creator>
      <dc:date>2018-03-01T13:39:50Z</dc:date>
    </item>
    <item>
      <title>Re: HTTPS Inspection outbound certificate problem</title>
      <link>https://community.checkpoint.com/t5/General-Topics/HTTPS-Inspection-outbound-certificate-problem/m-p/33110#M6933</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;yes our mistake on the type of configuration.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 01 Mar 2018 17:11:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/HTTPS-Inspection-outbound-certificate-problem/m-p/33110#M6933</guid>
      <dc:creator>Michael_Horne</dc:creator>
      <dc:date>2018-03-01T17:11:25Z</dc:date>
    </item>
  </channel>
</rss>

