<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Azure AD application proxy and HTTPS Inspection in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-AD-application-proxy-and-HTTPS-Inspection/m-p/149433#M23956</link>
    <description>&lt;P&gt;R81.10 Take 45, 5000 series appliance, non-VSX.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The customer has been evaluating this service from Microsoft.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.microsoft.com/en-us/azure/active-directory/app-proxy/application-proxy" target="_blank" rel="noopener"&gt;Remote access to on-premises apps - Azure AD Application Proxy | Microsoft Docs&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Everything works fine until HTTPS Inspection is turned on. From that moment, the rendering of applications becomes inconsistent with screen freezes, lag and so on. Unchecking HTTPS Inspection clears this.&lt;/P&gt;&lt;P&gt;Nothing is actually inspected as HTTPS Inspection is also being evaluated so the only initial actions were first to activate the service with a single rule any/any/any bypass upon which rules would be built. In the logs, all HTTPS traffic is shown as bypassed and all other HTTPS applications continue working.&lt;/P&gt;&lt;P&gt;The certificate has been regenerated, CA list updated, SecureXL off/on, failover, reboot, tried Ongoing Take 55, same result.&lt;/P&gt;&lt;P&gt;wstlsd.elg and drops debugs on traffic don't show any issues.&lt;/P&gt;&lt;P&gt;I wonder if anyone would have any hint on what else to check.&lt;/P&gt;</description>
    <pubDate>Wed, 25 May 2022 11:14:02 GMT</pubDate>
    <dc:creator>Alex-</dc:creator>
    <dc:date>2022-05-25T11:14:02Z</dc:date>
    <item>
      <title>Azure AD application proxy and HTTPS Inspection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-AD-application-proxy-and-HTTPS-Inspection/m-p/149433#M23956</link>
      <description>&lt;P&gt;R81.10 Take 45, 5000 series appliance, non-VSX.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The customer has been evaluating this service from Microsoft.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.microsoft.com/en-us/azure/active-directory/app-proxy/application-proxy" target="_blank" rel="noopener"&gt;Remote access to on-premises apps - Azure AD Application Proxy | Microsoft Docs&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Everything works fine until HTTPS Inspection is turned on. From that moment, the rendering of applications becomes inconsistent with screen freezes, lag and so on. Unchecking HTTPS Inspection clears this.&lt;/P&gt;&lt;P&gt;Nothing is actually inspected as HTTPS Inspection is also being evaluated so the only initial actions were first to activate the service with a single rule any/any/any bypass upon which rules would be built. In the logs, all HTTPS traffic is shown as bypassed and all other HTTPS applications continue working.&lt;/P&gt;&lt;P&gt;The certificate has been regenerated, CA list updated, SecureXL off/on, failover, reboot, tried Ongoing Take 55, same result.&lt;/P&gt;&lt;P&gt;wstlsd.elg and drops debugs on traffic don't show any issues.&lt;/P&gt;&lt;P&gt;I wonder if anyone would have any hint on what else to check.&lt;/P&gt;</description>
      <pubDate>Wed, 25 May 2022 11:14:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-AD-application-proxy-and-HTTPS-Inspection/m-p/149433#M23956</guid>
      <dc:creator>Alex-</dc:creator>
      <dc:date>2022-05-25T11:14:02Z</dc:date>
    </item>
    <item>
      <title>Re: Azure AD application proxy and HTTPS Inspection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-AD-application-proxy-and-HTTPS-Inspection/m-p/149458#M23963</link>
      <description>&lt;P&gt;Hey,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Based on this "&lt;SPAN&gt;From that moment, the rendering of applications becomes inconsistent with screen freezes, lag and so on. Unchecking HTTPS Inspection clears this.&lt;/SPAN&gt;" an not knowing exactly what model of appliance you have, I could say you are seeing/hitting an appliance limitation.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could it also be that the application you try to access through the Azure APP Proxy, requires some extra accesses/resources that are not allowed ?!?!?! Try with an simple app and see what you get .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The application freeze is when you try to reach from outside an internal application through Azure App Proxy?&lt;/P&gt;&lt;P&gt;How about the performance for browsing from inside to outside - that passes also through the same GW so you could clearly see and pinpoint the GW .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 25 May 2022 15:27:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Azure-AD-application-proxy-and-HTTPS-Inspection/m-p/149458#M23963</guid>
      <dc:creator>Sorin_Gogean</dc:creator>
      <dc:date>2022-05-25T15:27:53Z</dc:date>
    </item>
  </channel>
</rss>

