Chapter 1 What’s New for FortiOS 5.2.1 : Security Profiles : SSL Inspection : SSL/Deep Inspection Exemptions
  
SSL/Deep Inspection Exemptions
The options for configuring exemptions to SSL/Deep Inspection is now configured as part of the deep inspection options, rather than FortiGuard web filtering. Exemptions can be added to SSL inspection by going to Policy & Objects > Policy > SSL Inspection or through the CLI.
Certain applications, such as iTunes and Dropbox, require a specific certificate to be used, rather than using the use the system's certificate store. Because of this, the default deep inspection profile, deep-inspection, has exemptions configured for these applications by default in FortiOS 5.2.
Syntax
config firewall ssl-ssh-profile
edit <name>
config ssl-exempt
edit <id>
set type {fortiguard-category | address | address6}
set category <id>
set address <string>
end
end
end
end