cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Who Me Too'd this topic

SSL inbound inspection not working for SMTP

L2 Linker

I'm running PANOS 10.0.2

SSL inbound inspection for a web server is working but for a seperate SMTP server it is not.

Both use the same certificate.

Both use the same cipher suites.

Two seperate decryption rules wihich are clones of each other, only the public destination IP-adress is different.

Both use the same decryption profile.

The SMTP server receives email just fine and from it's logs I can tell that the TLS handshake is succesfull plus it shows details of the cipher suite that has been used.

Also I notice that the traffic logs only show smtp-base, the never show smtp-starttls. In the security policy rule for mail server I have chosen smtp as application which should be good enough for smtp-base and smtp-starttls.

Furthermore this setup has worked with earlier PANOS release, which one I forgot.

 

Who Me Too'd this topic