Solved

Firewall issue with iPad restore though iTunes

Posted on 2015-02-06
8
101 Views
Last Modified: 2015-02-17
I just installed a Fortigate 80D at a client site.  Installed fine but now client is saying that they cannot do a restore of their iPads and are getting a error when it tries to verify software?  Nothing is blocked going out of the firewall.  There is a content filter on Fortigate.  I have opened *.apple.com and *.verisign.com through the filter.  Any ideas what I might be missing?
0
Comment
Question by:DaveKall42
  • 5
  • 3
8 Comments
 
LVL 7

Accepted Solution

by:
Peter Loobuyck earned 500 total points
ID: 40595642
My best guess is that you scanning ssl traffic. I suggest you turn off all ssl filtering on the 17.0.0.0/8 subnet (it's all Apple).

The ipads will get through now..
0
 

Author Comment

by:DaveKall42
ID: 40595705
Ok, let me try that.
0
 

Author Comment

by:DaveKall42
ID: 40595709
I just created a new policy for lan to wan any to 17.0.0.0/8  for any ports with no services enabled on the policy.  That should work?
0
Back Up Your Microsoft Windows Server®

Back up all your Microsoft Windows Server – on-premises, in remote locations, in private and hybrid clouds. Your entire Windows Server will be backed up in one easy step with patented, block-level disk imaging. We achieve RTOs (recovery time objectives) as low as 15 seconds.

 
LVL 7

Expert Comment

by:Peter Loobuyck
ID: 40595754
Yes, lan to wan to 17.0.0.0/8, without any um profile, just nat.
It's probably the deep ssl inspection. That replaces the ssl certificate to inspect it. Apple won't allow that I bet!
That should work.

Can you test it?
0
 

Author Comment

by:DaveKall42
ID: 40595755
I cannot today as I am not onsite.  Its a school so will be only able to test on Monday.
0
 
LVL 7

Expert Comment

by:Peter Loobuyck
ID: 40595768
Allright, let me know on Monday if it's working or not..
0
 

Author Comment

by:DaveKall42
ID: 40595770
Will do, thanks so much for your help!
0
 

Author Closing Comment

by:DaveKall42
ID: 40615518
Worked!!
0

Featured Post

Back Up Your Microsoft Windows Server®

Back up all your Microsoft Windows Server – on-premises, in remote locations, in private and hybrid clouds. Your entire Windows Server will be backed up in one easy step with patented, block-level disk imaging. We achieve RTOs (recovery time objectives) as low as 15 seconds.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Cisco ASA 5512 LAN Config 16 79
Direct Access 2012R2 Two Network Card Configuration Behind TMG 2010 3 66
Cisco ASA 3 36
Mac OS X Server cant overwrite old files 7 42
There are many out there who own an iPad but are frustrated by the lack of Flash support. This prevents many webpages from displaying their content correctly on the iPad .  In addition Flash games are not supported on the iPad either.  Regardless of…
In this article we have discussed about the OS X EI Capitan and how to fix Wi-Fi issue in OS X El Capitan. We have explained how to delete system level preferences and create a new Wi-Fi location to resolve Wi-Fi issue.
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
Two types of users will appreciate AOMEI Backupper Pro: 1 - Those with PCIe drives (and haven't found cloning software that works on them). 2 - Those who want a fast clone of their boot drive (no re-boots needed) and it can clone your drive wh…

820 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question