We have a 5200 running R80.20.
We were experiencing some problems with HTTPS Inspection so we have turned that blade off.
The enabled blades are Firewall, Application Control, URL Filtering, Content Awareness, IPS Threat Emulation, Anti-Bot, Anti-Virus.
We have started to receive reports from users of browser pop ups complaining about unable to check certificate revocation.
I have not been to find any errors in the logs that relate to this, and it is not every site.
In both the examples I have witnessed the CA is Digicert.
Searching the KB doesn't bring up anything regarding needing to configure specific rules for CRL downloads, but I also haven't been to find out if the firewall caches or periodically downloads CRL info if the HTTPS Inspection blade is off.
Any help appreciated.
Thanks
Pedro