- CheckMates
- :
- Products
- :
- Quantum
- :
- Management
- :
- HTTPS Inspection Problem
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
HTTPS Inspection Problem
Hi
I want to inspect and drop only a specific URL but when I create a costom application with full URL (eg. www.example.com/test) it doesn't inspect packet. If I write down only domain it works (e.g. www.example.com ). In URL filtering it works with specific url in list no problem. For business purposes I have to inspect traffic only with specific url and bypass all URLs under same domain. What should I do for it?
- Tags:
- inspection
- url
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
In order to see the the full URL, HTTPS Inspection needs to be performed.
We can see the site being accessed without it (at least up to TLS 1.2).
So it’s not possible to inspect only www.example.com/url without inspecting everything else at www.example.com.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Is it HTTPSi or URF filtering question, or both? 🙂
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
There is no problem in URL filtering with specific URL but in HTTPSi if I write full URL it doesn't match. I have to write main domain URL to match the inspection rule.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Please show your HTTPS inspection rule you are applying to that application
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
In order to see the the full URL, HTTPS Inspection needs to be performed.
We can see the site being accessed without it (at least up to TLS 1.2).
So it’s not possible to inspect only www.example.com/url without inspecting everything else at www.example.com.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thanks
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hmmm, I assumed HTTPSi is enabled. Wrong assumption 🙂
