Skip to content
View in the app

A better way to browse. Learn more.

Kaspersky Support Forum

A full-screen app on your home screen with push notifications, badges and more.

To install this app on iOS and iPadOS
  1. Tap the Share icon in Safari
  2. Scroll the menu and tap Add to Home Screen.
  3. Tap Add in the top-right corner.
To install this app on Android
  1. Tap the 3-dot menu (⋮) in the top-right corner of the browser.
  2. Tap Add to Home screen or Install app.
  3. Confirm by tapping Install.

Encryption connection scanning (Kaspersky in the middle HTTPS scanning) is conflicting with Phoenix Contact mGuard industrial VPN service

The mGuard RS series of VPN routers will fail when attempting to use the firewall administration interface while VPN’d into the unit, if the Kaspersky “Encryption connection scanning” setting is enabled.  There are multiple items that fail in the web interface that are symptoms of the failure.   The same symptoms take place across chrome, edge and firefox browsers.

  1. The mguard firewall administration interface will frequently fail while navigating in the administration UI with the message “could not connect to mguard service, retrying” and force a complete logout/login to reconnect.
  2. The “Interfaces” » Network Status table will never show external IP, Current Default Route, and Used DNS Servers values on that page (it will remain blank reguardless of what you do).
  3. When saving a configuration, the “reloading” pinwheel never goes away and the save button never returns without logging off and loggin in again.

I realize this is an extremely esoteric issue set, but I wanted to get this posted in case anyone else workign with thes industrial vpn firewall routers runs into issues as well.   I’ve reported this to Phoenix Contact as well, but disabling the “Encryption connection scanning” including for firefox has made this issue go away.

 

I’m kind of uncomfortable with this setting, now that I’m aware of it, being enabled anyway.  What justification is there for a 3rd party to be intercepting https traffic…  I guess to deal with malware scenarios but mozilla and chrome teams have advised vendors NOT to do this multiple times now.

Featured Replies

Please sign in to comment

You will be able to leave a comment after signing in

Sign In Now

Account

Navigation

Search

Search

Configure browser push notifications

Chrome (Android)
  1. Tap the lock icon next to the address bar.
  2. Tap Permissions → Notifications.
  3. Adjust your preference.
Chrome (Desktop)
  1. Click the padlock icon in the address bar.
  2. Select Site settings.
  3. Find Notifications and adjust your preference.