Certificates do not meet pinning requirements MacOS
I've had to upgrade some of our internal Apple Mac workstations from Sierra 10.12 / High Sierra 10.13 to Catalina 10.15 and Big Sur 11. We've had HTTPS packet inspection running for a while on the older versions of MacOS by adding the Watchguard Certs locally as allowed to do everything.
Fireware is 12.7.0 on M500 cluster.
Since upgrading the MacOS The workstations have had issues with all HTTPS site connections reporting, This connection is not private. If I look at the certificate it show the proxy cert and gives the error in the title above. (using Safari as the browser)
Has anybody seen this and do you have a solutions to keep Content inspections working.
At present I've had to move the Apple's to a plain HTTPS firewall rule without inspection.
The Certificate from the firewall is the default Cert, I've not made any changes to its internal cert.
I hope this make sense to you all.