Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
This widget could not be displayed.
1 Reply

Outbound Https inspection


If I enable this setting, would I no longer have to create inspection bypass rules in the policy? a single rule to inspect all https traffic to the Internet, if it is not possible to inspect, the https inspection blade automatically bypasses.


What I want to do is decrypt all traffic that can be decrypted by the https inspection blade so that the other threat prevention blades can check the content, if this is not possible for technical limitations instead of creating rules for each site, it is the firewall that makes the decision automatically to let the traffic without decrypting it.


Is my understanding well for this parameter? Or is there another configuration to achieve this goal?

Https inspection fail mode

Https inspection fail mode

Outbound Https inspection


If I enable this setting, would I no longer have to create inspection bypass rules in the policy? a single rule to inspect all https traffic to the Internet, if it is not possible to inspect, the https inspection blade automatically bypasses.


What I want to do is decrypt all traffic that can be decrypted by the https inspection blade so that the other threat prevention blades can check the content, if this is not possible for technical limitations instead of creating rules for each site, it is the firewall that makes the decision automatically to let the traffic without decrypting it.


Is my understanding well for this parameter? Or is there another configuration to achieve this goal?

Outbound Https inspection


If I enable this setting, would I no longer have to create inspection bypass rules in the policy? a single rule to inspect all https traffic to the Internet, if it is not possible to inspect, the https inspection blade automatically bypasses.


What I want to do is decrypt all traffic that can be decrypted by the https inspection blade so that the other threat prevention blades can check the content, if this is not possible for technical limitations instead of creating rules for each site, it is the firewall that makes the decision automatically to let the traffic without decrypting it.


Is my understanding well for this parameter? Or is there another configuration to achieve this goal?

0 Kudos
0 Kudos