Can Sophos Network Extension SSL inspection work with Firewall SSL inspection feature?

Options
Zyxel_James
Zyxel_James Posts: 796 image  Zyxel Employee
Zyxel Certified Network Administrator - Security Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate 100 Answers

Question: Can Sophos Network Extension SSL inspection work with Firewall SSL inspection feature?

Answer: It would cause browsing problem. Sophos will detect the zyxel ssl inspection as MITM attack, so drops the HTTPS traffic.
First, HTTPS traffic will be intercepted by Sophos, and certificate will be re-sighed. Then the traffic will be intercepted by Zyxel Firewall again.
MacOS Safari browser may not encounter issues because its validation rules are more lenient, while Chrome applies stricter checks