<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Multiple Gateways with different outbound certificate for https inspection in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/158283#M27591</link>
    <description>&lt;P&gt;Actually, no. See my reply&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 28 Sep 2022 10:01:14 GMT</pubDate>
    <dc:creator>_Val_</dc:creator>
    <dc:date>2022-09-28T10:01:14Z</dc:date>
    <item>
      <title>Multiple Gateways with different outbound certificate for https inspection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/61261#M27586</link>
      <description>&lt;P&gt;Hey!&amp;nbsp;&lt;/P&gt;&lt;P&gt;One of our customers has multiple clusters for his branch offices. In every branch, he want to use Application Control, URL Filtering and https inspection. His idea is to generate for every cluster it´s own https inspection outbound certificate. Is it possible to realize it?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;Michael&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 26 Aug 2019 16:27:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/61261#M27586</guid>
      <dc:creator>Michael_Kovac</dc:creator>
      <dc:date>2019-08-26T16:27:08Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple Gateways with different outbound certificate for https inspection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/61291#M27587</link>
      <description>&lt;P&gt;According to&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk65123&amp;amp;partition=General&amp;amp;product=HTTPS" target="_blank"&gt;sk65123: &lt;STRONG&gt;HTTPS&lt;/STRONG&gt;&lt;STRONG&gt;Inspection&lt;/STRONG&gt;FAQ&lt;/A&gt;&amp;nbsp;yes.&lt;/P&gt;</description>
      <pubDate>Tue, 27 Aug 2019 09:27:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/61291#M27587</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2019-08-27T09:27:23Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple Gateways with different outbound certificate for https inspection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/61293#M27588</link>
      <description>&lt;P&gt;ok. I can not find the solution.... where is it described?&amp;nbsp;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Which software blades support HTTPS Inspection?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Which operating systems support HTTPS Inspection?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Does HTTPS Inspection require a license? Is it a software blade?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Are there legal implications to enabling HTTPS Inspection in my organization?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Has Check Point cracked HTTPS? Could an attacker do this?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Why do I get certificate warnings in the browser after turning on HTTPS Inspection?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;How can I make PCs trust the gateway's CA certificate?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Does HTTPS Inspection use the Security Management server's Internal CA to issue certificates?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Is there a performance impact when enabling HTTPS Inspection on the gateway?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Why are Extended Validation (EV) certificates displayed as regular certificates in the browser?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;How are the CAs in the list of Trusted CAs chosen? Is the list updated?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Does HTTPS Inspection check for CRLs? What about OCSP?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Does HTTPS Inspection work on protocols other than HTTPs?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Can I replace the gateway's CA with a different CA?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Is it possible to perform selective inspection - just on specific sites, categories or users?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Why do I sometimes get the gateway CA even for sites that are not configured to be decrypted?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;What information from the encrypted traffic is logged?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;I read in the news that someone conned the "xyz" CA to give them certificates for the "abc" web site. What should I do?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Which SSL/TLS versions are supported by HTTPS Inspection?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Why isn't SSLv2 supported?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Which ciphers are supported by SSL inspection?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;On which platforms/appliances is HTTPS Inspection supported?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Does HTTPS Inspection support 3rd party wildcard certificates (like *.mycompany.com)?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Why after enabling HTTPS Inspection some resources that use HTTPS protocol fail to connect?&lt;/A&gt;&lt;/LI&gt;&lt;LI&gt;&lt;A target="_blank"&gt;Is Client Certificate authentication supported by HTTPS Inspection?&lt;/A&gt;&lt;/LI&gt;&lt;/OL&gt;</description>
      <pubDate>Tue, 27 Aug 2019 09:42:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/61293#M27588</guid>
      <dc:creator>Michael_Kovac</dc:creator>
      <dc:date>2019-08-27T09:42:53Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple Gateways with different outbound certificate for https inspection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/61294#M27589</link>
      <description>&lt;P&gt;8+14.&lt;/P&gt;
&lt;P&gt;as well as&lt;/P&gt;
&lt;P&gt;Threat Prevention Administration Guide R80.30 p.147f&lt;/P&gt;</description>
      <pubDate>Tue, 27 Aug 2019 09:57:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/61294#M27589</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2019-08-27T09:57:13Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple Gateways with different outbound certificate for https inspection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/158282#M27590</link>
      <description>&lt;P&gt;If the question is: "Can I use different outbound certificates" for multiple security GWs under the same management, the answer is no. You can use one CA certificate per Security domain for the outbound TLS inspection. All GWs managed by the same SMS will share it.&lt;BR /&gt;&lt;BR /&gt;If you want to use different certs, you need those GWs to be managed by different security domains. This is possible either with multiple SMSs or with MDM solution.&lt;/P&gt;</description>
      <pubDate>Wed, 28 Sep 2022 10:00:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/158282#M27590</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-09-28T10:00:47Z</dc:date>
    </item>
    <item>
      <title>Re: Multiple Gateways with different outbound certificate for https inspection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/158283#M27591</link>
      <description>&lt;P&gt;Actually, no. See my reply&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 28 Sep 2022 10:01:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Multiple-Gateways-with-different-outbound-certificate-for-https/m-p/158283#M27591</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-09-28T10:01:14Z</dc:date>
    </item>
  </channel>
</rss>

