URL filtering will not work on TLS traffic for web sites that use HTTP2
book
Article ID: 367516
calendar_today
Updated On:
Products
VMware vDefend Firewall
Issue/Introduction
You are using NSX-T 3.2.1.2 or earlier.
URL filtering and TLS inspection are configured.
Deny/Allow actions do not take affect on the L7 access profile on sites using HTTP2.
Cause
Websites using HTTP2 instead of HTTP 1.1 do not function correctly with TLS inspection. TLS inspection does not take affect on these sites thus the URL filtering rule is missed.
Resolution
Added support for HTTP2 from NSX-T 3.2.2 and NSX 4.0.1.1.