Question about Protected Scope for Threat Emulation

Question asked by Vladimir Yakovlev on May 3, 2018
In Threat Prevention Profile properties, under "Threat Emulation" / "General" / "Protected Scope" section we have the ability to define if we are inspecting traffic from External, External + DMZs or All interfaces.


Will the "Protected Scope" property of the rule itself supersede this configuration and make it applicable to the scope specified in it?



Additionally, will the UserCheck require HTTPS inspection or simply distributing ICA cert will suffice?