Consider the scenario where the server name indication (SNI) does not match either the common name (CN) or any of the subject alternative names (SAN) in the server certificate. Which action will FortiGate take when using the default settings for SSL certificate inspection?
SNI and Certificate Mismatch: When the Server Name Indication (SNI) does not match either the Common Name (CN) or any of the Subject Alternative Names (SAN) in the server certificate, FortiGate's default behavior is to consider this as an invalid SSL/TLS configuration.
Default Action: FortiGate, under default settings for SSL certificate inspection, will close the connection to prevent potential security risks associated with mismatched certificates.
Otis
11 months agoShawnda
11 months agoEvan
10 months agoHeike
10 months agoMary
10 months agoJose
10 months agoRomana
10 months agoKathrine
10 months agoWilda
11 months agoDustin
10 months agoMarge
10 months agoTwana
10 months agoHelene
11 months agoMirta
11 months agoOren
11 months agoErasmo
11 months agoStevie
12 months agoJesus
12 months agoShasta
1 years agoLindsey
1 years agoLuisa
12 months agoPansy
12 months agoCyril
12 months ago