<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SSL enable websites not opening in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73784#M2909</link>
    <description>&lt;P&gt;Well one issue resolved but in case Certificate issue. CP support told the same issue is there side also and saying the issue is from Website not from us. But i can see that issue occur with many websites. &lt;STRONG&gt;&lt;U&gt;Connection Not secure&lt;/U&gt;&lt;/STRONG&gt; having issue with many websites. This issue is occurring when i am enable the SSL inspection.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="z5.png" style="width: 914px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/4283iAACE1251643BA5CB/image-size/large?v=v2&amp;amp;px=999" role="button" title="z5.png" alt="z5.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 30 Jan 2020 16:31:12 GMT</pubDate>
    <dc:creator>humt</dc:creator>
    <dc:date>2020-01-30T16:31:12Z</dc:date>
    <item>
      <title>SSL enable websites not opening</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73693#M2899</link>
      <description>&lt;P data-unlink="true"&gt;Appliance is 730 and fw is 70.20.87.&amp;nbsp; I have enable the SSL inspection but the problem is some websites are not open such as https:\\support[.]kaspersky[.]com&amp;nbsp;. I have created a ticket there also but the issue is still there. Even i have try to bypass it. But still not get success. Even CP support is trying but not get success yet. They are searching for more. It works with HTTPS categorization but not with SSL inspection.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This command run but no sucess yet. If some one knows , how to solve it. Please let me know asap.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;ckp_regedit -a SOFTWARE//CheckPoint//FW1 CPTLS_ACCEPT_ECDHE 1
ckp_regedit -a SOFTWARE//CheckPoint//FW1 CPTLS_PROPOSE_ECDHE 1
ckp_regedit -a SOFTWARE//CheckPoint//FW1 CPTLS_EC_P384 1&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Another issue-&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="z1.png" style="width: 860px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/4273iE5A6E23F68288D40/image-size/large?v=v2&amp;amp;px=999" role="button" title="z1.png" alt="z1.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;And there are some websites which are showing not secure such as google.com etc. This issue is same in SSL only. At the time of opening, its shows secure but after 10-30minutes start showing not secure.&amp;nbsp; This issue is with some websites only specially with internal pages.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="z2.png" style="width: 957px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/4274i53DB91F2583415C5/image-size/large?v=v2&amp;amp;px=999" role="button" title="z2.png" alt="z2.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jan 2020 02:58:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73693#M2899</guid>
      <dc:creator>humt</dc:creator>
      <dc:date>2020-01-30T02:58:02Z</dc:date>
    </item>
    <item>
      <title>Re: SSL enable websites not opening</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73719#M2900</link>
      <description>This is an SMB appliance so the regedit commands you mention won't work.&lt;BR /&gt;Precise error messages you're experiencing when you are trying to access this site would helpful.&lt;BR /&gt;Also if you're trying to configure a bypass for HTTPS Inspection it needs to be configured according to what the CN of the site certificate says, which may be different from the URL you use to access the site.</description>
      <pubDate>Thu, 30 Jan 2020 04:26:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73719#M2900</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-01-30T04:26:49Z</dc:date>
    </item>
    <item>
      <title>Re: SSL enable websites not opening</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73784#M2909</link>
      <description>&lt;P&gt;Well one issue resolved but in case Certificate issue. CP support told the same issue is there side also and saying the issue is from Website not from us. But i can see that issue occur with many websites. &lt;STRONG&gt;&lt;U&gt;Connection Not secure&lt;/U&gt;&lt;/STRONG&gt; having issue with many websites. This issue is occurring when i am enable the SSL inspection.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="z5.png" style="width: 914px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/4283iAACE1251643BA5CB/image-size/large?v=v2&amp;amp;px=999" role="button" title="z5.png" alt="z5.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jan 2020 16:31:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73784#M2909</guid>
      <dc:creator>humt</dc:creator>
      <dc:date>2020-01-30T16:31:12Z</dc:date>
    </item>
    <item>
      <title>Re: SSL enable websites not opening</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73795#M2911</link>
      <description>Have you installed the CA certificate on your local PC?</description>
      <pubDate>Thu, 30 Jan 2020 18:05:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73795#M2911</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-01-30T18:05:56Z</dc:date>
    </item>
    <item>
      <title>Re: SSL enable websites not opening</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73920#M2921</link>
      <description>&lt;P&gt;Yes but still same issue.&lt;/P&gt;</description>
      <pubDate>Sat, 01 Feb 2020 04:14:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73920#M2921</guid>
      <dc:creator>humt</dc:creator>
      <dc:date>2020-02-01T04:14:45Z</dc:date>
    </item>
    <item>
      <title>Re: SSL enable websites not opening</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73942#M2922</link>
      <description>Can you show what the certificate for the website looks like?</description>
      <pubDate>Sat, 01 Feb 2020 18:14:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/73942#M2922</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-02-01T18:14:30Z</dc:date>
    </item>
    <item>
      <title>Re: SSL enable websites not opening</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/74040#M2925</link>
      <description>&lt;P&gt;It looks like HTTPS Inspection is configured correctly on the gateway as the certificate presented in the browser per your PM.&lt;BR /&gt;However, the fact you are receiving errors means you have:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Not imported the CA key from the SMB device into the Certificate Store for your OS and/or Browser&lt;/LI&gt;
&lt;LI&gt;Marked the CA key from your SMB device key as trusted&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Until you do this correctly on the end user device, you will continue to receive these errors.&lt;BR /&gt;Refer to your OS/browser manufacturer for instructions on how to import (and trust) a new CA key.&lt;/P&gt;</description>
      <pubDate>Mon, 03 Feb 2020 16:35:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/SSL-enable-websites-not-opening/m-p/74040#M2925</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-02-03T16:35:09Z</dc:date>
    </item>
  </channel>
</rss>

