Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
abutayyab
Explorer

Implementing HTTPS Inspection in a Multi-Tenant VSX Setup — What’s the Industry Standard?

Hey,

I am deploying a Check Point cluster in VSX VSLS mode for an MSSP solution, which we're offering to our customers. Every virtual-system connects to the customer network via a site-to-site VPN. And I have enabled blades like APPI, URLF, TE & TEX, SSL_INSPECT, IPS, AV & ABOT. I would like to inspect a certain amount of customer traffic using HTTPS Inspection and gradually tweak this setting after observing the resource utilization over a period of time. What is the golden standard for deploying HTTPS Inspection? What web categories and sites should I always opt to inspect, keeping in mind the security posture?

Since every customer would have a different environment, and I don't want to have a generic solution that would fit everyone. But I would like to understand where I can start to begin with?

Moreover, is there a utility out there that I can put to use to measure how efficiently my gateway is inspecting all this traffic?

Thanks!

Abdul Tayyeb R.

0 Kudos
0 Replies

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events