Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Oliver_222
Participant

‘TLS alert: protocol_version’ after QUIC blocking and connecting via https


Good afternoon

Can you please tell me if HTTPS inspection will work correctly when the connection is already via TCP 443?

We have QUIC blocked. User has Bypass configured in https inspection. In logs we see reject QUIC and then Bypass log with Alert. And we see the error: ‘The probe detected that this destination cannot be inspected and its identity cannot be verified due to a TLS alert (TLS alert: protocol_version)’.
What can this be related to?

0 Kudos
1 Reply
PhoneBoy
Admin
Admin

What version/JHF of gateway?
If the remote site is requiring TLS 1.3 and you do not have USFW enabled (requires R81 and above), the max version that can be inspected is 1.2 (which might account for this error).
See: https://support.checkpoint.com/results/sk/sk167052 

A screenshot of the full log card (with sensitive details redacted) might help.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events