HTTPS proxy issues

I'm trying to get HTTPS proxy working and I'm running into websites that are blocked with 'Connection closing on ssl failure' or ssl failed.

My https client proxy action is set to inspect if no domain name rule is matched. If I set to allow, the websites work which I understand skips content inspection defeating the purpose. A timekeeping website and wasabi experience this as well as non-work related like espn.

Is it normal to have to add any website used as an exception or is something not right with my setup?

Comments

  • james.carsonjames.carson Moderator, WatchGuard Representative

    Hi @TimB

    It's possible the proxy isn't able to open a connection to the distant server, or doesn't have the correct root certs to trust that connection.

    Please ensure that you have auto updates for trusted CA certs enabled.

    See:
    https://techsearch.watchguard.com/KB?type=Article&SFDCID=kA16S000000SNIXSA4&lang=en_US

    If that doesn't help, I'd suggest opening a support case so that one of our reps can take a look at your specific firewall/traffic, and help with a solution. You can do that via the support center button at the top right of this page.

    -James Carson
    WatchGuard Customer Support

Sign In to comment.