Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Matlu
Collaborator

Curiosity about HTTPs Inspection

Hello, team.

I have a curiosity, the HTTPs Inspection mechanism, only works in the "Internal to External" direction, is this correct?

I mean, the packet will only be fully inspected when a user of a company's network tries to consume a web service, like cnn.com for example.
Is this theory correct?

Thanks for your comments.

0 Kudos
3 Replies
Chris_Atkinson
Employee
Employee

It can be configured for Inbound (servers) & Outbound (users).

Refer: sk108202 - Best Practices - HTTPS Inspection

0 Kudos
Matlu
Collaborator

Hello,

 

HTTPs Inspection works also in the sense of "Outbound -> Inbound"?

 

I mean if I publish a web page on the Internet, and someone from anywhere on the Internet, wants to visit my page, HTTPs Inspection will work by "inspecting" the whole package?

 

Greetings.

0 Kudos
Chris_Atkinson
Employee
Employee

Yes it can be configured for this as explained in the SK linked above to protect servers from being attacked from the Internet. 

Some organizations might achieve this with a WAF or AppSec but it is also an option of the Firewall and ensures things like IPS are most effective.

 

0 Kudos