eSIM Activation fails because of SSL Inspection
Confirmed 7/20/2026
Problem
While trying to activate an eSIM on a notebook being scanned with full ssl inspection, the activation fails.
Symptoms
many errors while trying to activate the eSIM. FortiGate is confirmed to be guilty as trying to activate the eSIM while notebook connected directly to internet sucess.
Environment
FortiGate
FortiOS version
All Versions
Root Cause
The SSL Inspection comes in the connection and generated errors because of custom SSL Certificate.
Solution
The solution is to exempt the FQDNs used by the eSIM carrier from SSL Inspection.
Under Security Profiles go to SSL/SSH Inspection, choose the profile you use in your firewall policies with the custom Certificate, under exempt from ssl inspection add the addresses provided to you by your eSIM service provider.
Verification
a new attempt of activation should now success.
Rollback
remove added addresses in the SSL/SSH Inspection profile.
Tags
No tags yet.
Community rating
— / 5 (0)