Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    import certificate on android deivces

    Cache/Proxy
    3
    3
    685
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      ammar177
      last edited by

      hi there, I am using squid package on pfsense. I am using "man in the middle and SSL inspection" features. Exported the CA certificate to the browsers installed on end users using windows. and it is working perfectly to block websites and file extensions etc. (mp3 mp4). I request to please help me how can I control the end users (using the android and apple devices) to prevent them using the squid "man in the middle and ssl inspection service". Is there any way to import pfsense certificate on these mobile devices?

      thanks and regards

      johnpozJ 1 Reply Last reply Reply Quote 0
      • johnpozJ
        johnpoz LAYER 8 Global Moderator @ammar177
        last edited by

        @ammar177 I have my iphone trust my pfsense CA, ie use this for my eap-tls wifi and freerad. And also if I access the pfsense web gui.

        I have also done this on my android tablet (running android 12).. But Android made some changes, so getting them to trust your CA might depend on what version your running, and what specifics maker of the android box did, someone else was having issues getting their android tablet to trust the CA..

        Let me see if can dig up that thread - it got pretty long.. But went through installing the certs and CA for the eap-tls stuff in there a few times, and would be really pretty much same process for getting your device to trust your CA.

        https://forum.netgate.com/topic/180087/freeradius-unifi-ap-eap-ttls?_=1686239498179

        I am missing the advanced search feature..

        An intelligent man is sometimes forced to be drunk to spend time with his fools
        If you get confused: Listen to the Music Play
        Please don't Chat/PM me for help, unless mod related
        SG-4860 24.11 | Lab VMs 2.7.2, 24.11

        M 1 Reply Last reply Reply Quote 0
        • M
          michmoor LAYER 8 Rebel Alliance @johnpoz
          last edited by

          @johnpoz said in import certificate on android deivces:

          I am missing the advanced search feature..

          oh man...its been killing me lately not having this. There are at least 4 threads i wished i bookmarked

          Firewall: NetGate,Palo Alto-VM,Juniper SRX
          Routing: Juniper, Arista, Cisco
          Switching: Juniper, Arista, Cisco
          Wireless: Unifi, Aruba IAP
          JNCIP,CCNP Enterprise

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.