Consider the scenario where the server name indication (SNI) does not match either the common name (CN) or any of the subject alternative names (SAN) in the server certificate. Which action will FortiGate take when using the default settings for SSL certificate inspection?
SNI and Certificate Mismatch: When the Server Name Indication (SNI) does not match either the Common Name (CN) or any of the Subject Alternative Names (SAN) in the server certificate, FortiGate's default behavior is to consider this as an invalid SSL/TLS configuration.
Default Action: FortiGate, under default settings for SSL certificate inspection, will close the connection to prevent potential security risks associated with mismatched certificates.
Otis
10 months agoShawnda
11 months agoEvan
9 months agoHeike
9 months agoMary
9 months agoJose
10 months agoRomana
10 months agoKathrine
10 months agoWilda
11 months agoDustin
10 months agoMarge
10 months agoTwana
10 months agoHelene
10 months agoMirta
10 months agoOren
11 months agoErasmo
11 months agoStevie
11 months agoJesus
11 months agoShasta
12 months agoLindsey
12 months agoLuisa
11 months agoPansy
11 months agoCyril
11 months ago