URL filtering will not work on TLS traffic for web sites that use HTTP2
search cancel

URL filtering will not work on TLS traffic for web sites that use HTTP2

book

Article ID: 367516

calendar_today

Updated On:

Products

VMware vDefend Firewall

Issue/Introduction

  • You are using NSX-T 3.2.1.2 or earlier.
  • URL filtering and TLS inspection are configured.
  • Deny/Allow actions do not take affect on the L7 access profile on sites using HTTP2.

Cause

Websites using HTTP2 instead of HTTP 1.1 do not function correctly with TLS inspection. TLS inspection does not take affect on these sites thus the URL filtering rule is missed.

Resolution

Added support for HTTP2 from NSX-T 3.2.2 and NSX 4.0.1.1.