Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
NapaCab
New Contributor

Online Certificate Revocation Checking for SSL MITM Inspection?

I see that FortiOS has an option to check for certs w/an ocsp-server (responder) for the VPN certificate, but I cannot for the life of me find anything in the FortiOS 6.x guide to configure it (if it's supported) for SSL MITM decryption.

 

Does FortiOS support this?

 

TIA!

 

 

3 REPLIES 3
hubertzw
Contributor III

NapaCab

I was looking for an option when using SSL inspection to configure an OSCP responder to check for expired/revoked certs?

hubertzw

You don't need deep SSL inspection to do it. Check this doc: https://docs2.fortinet.co...icate-revocation-lists
Labels
Top Kudoed Authors