FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
asostizzo_FTNT
Article Id 191929

Description
Unsafe content is still being displayed eventhough Safe Search is enabled in the Web Filter profile applied to a firewall policy.
Solution
Reason:
Since Google Search uses secured traffic (https), encrypted connections must also be scanned in order for this feature to be effective.


Note:
When enabling SSL inspection in a firewall policy, clients will be prompted with a certificate error when accessing secured (https) sites unless the CA certificate has been loaded into the client browser. See links below for more information.

Steps to Follow:
Follow these steps in order to effectively enforce Safe Search results when searching using the Google search engine.

1. Enable and inspection of HTTPS protocol in the SSL Inspection profile to be used in the security Policy:
 
FD35257_Capture2.JPG
2. Enable the option "Scan Encrypted Connections" in the Web Filter profile to be used in the firewall policy:
 
FD35257_Capture.JPG

 

Related Articles

Technical Tip: Safe Search feature in FortiOS and how to enable it

Technical Note : Importing the FortiGate SSL Proxy certificate in Internet Explorer 8 (IE8) for decr...

Technical Note : Digital Certificate management example: Signing a certificate with a CA, Importing ...

Contributors