← Back to knowledge base
mediumSecurity Profiles (AV/IPS/WebFilter)

eSIM Activation fails because of SSL Inspection

Confirmed 7/20/2026

Problem

While trying to activate an eSIM on a notebook being scanned with full ssl inspection, the activation fails.

Symptoms

many errors while trying to activate the eSIM. FortiGate is confirmed to be guilty as trying to activate the eSIM while notebook connected directly to internet sucess.

Environment

FortiGate

FortiOS version

All Versions

Root Cause

The SSL Inspection comes in the connection and generated errors because of custom SSL Certificate.

Solution

The solution is to exempt the FQDNs used by the eSIM carrier from SSL Inspection.

Under Security Profiles go to SSL/SSH Inspection, choose the profile you use in your firewall policies with the custom Certificate, under exempt from ssl inspection add the addresses provided to you by your eSIM service provider.

Verification

a new attempt of activation should now success.

Rollback

remove added addresses in the SSL/SSH Inspection profile.

Tags

No tags yet.

Community rating

/ 5 (0)

Sign in to rate

Discussion (0)

    No comments yet.

Sign in to join the discussion.