- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
11-07-2020 12:19 AM
I'm running PANOS 10.0.2
SSL inbound inspection for a web server is working but for a seperate SMTP server it is not.
Both use the same certificate.
Both use the same cipher suites.
Two seperate decryption rules wihich are clones of each other, only the public destination IP-adress is different.
Both use the same decryption profile.
The SMTP server receives email just fine and from it's logs I can tell that the TLS handshake is succesfull plus it shows details of the cipher suite that has been used.
Also I notice that the traffic logs only show smtp-base, the never show smtp-starttls. In the security policy rule for mail server I have chosen smtp as application which should be good enough for smtp-base and smtp-starttls.
Furthermore this setup has worked with earlier PANOS release, which one I forgot.