- CheckMates
- :
- Products
- :
- General Topics
- :
- Need help Bypassing Mimecast CDN Traffic without b...
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Need help Bypassing Mimecast CDN Traffic without bypassing cloudfront
We are running R81.10 and we do SSL Inspection Outbound on traffic which has been a challenge but can usually find a creative solution. However, running into an issue where we need to bypass Mimecast CDN traffic to effectively utilize their Cybergraph product, but the domains they provide are all Amazon Cloudfront and we are trying to avoid using the dynamic object for Cloudfront as a bypass company wide. Has anyone else dealt with this?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thats a bit tricky, but you sort of have to use same approach as you would with geo block. So say, if you wanted to block whole continent of South America (but only allow Argentina, just as an example), you would have to put rule to allow Argentina above the rule that would block whole South American continent.
Now, for what you are asking, use similar approach. For example, you put sites you need to allow in url+app layer (if its ordered layer, I assume) and then in https inspection policy, you bypass same sites as well.
Message me privately if you need help with this, Im confident I can help you out, as I did similar things few times before.
