Support Center > Search Results > SecureKnowledge Details
HTTPS Inspection does not block HTTPS sites whose FQDN does not match the "Issued to" field in their certificate
Symptoms
  • HTTPS Inspection does not block some HTTPS sites although an Application/Site object with the correct configured URL is used in the Application & URL Filtering policy.
Cause

The URL that was configured in the Application/Site object does not match the URL in the "Issued to" field in the HTTPS site's certificate.

Example:

Web site URL https://www.proxysite.com
URL configured in the Application/Site object *.proxysite.com
Certificate was issued to ssl382537.cloudflaressl.com


Solution
Note: To view this solution you need to Sign In .