Re: Web Page Blocked - Category: Unrated
☼ Best Answerby R1chou 2021/03/09 00:09:29
You must have either certificate inspection or deep inspection for SSL set on the hitting policy. I think it started blocking invalid certificates by default after 6.2. I would try separating a policy only for this particular traffic and apply a new inspection profile with either "Untrusted SSL certificate:Allow" or "Allow invalid SSL certificate" if your server can't have a valid cert. We encountered a similar issue with SSL VPN when we upgrade FGTs to 6.2.7, and did the former to mitigate.
By the way, you might want to move the virus mng server into DMZ.