<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to exclude IP address or Application from SSL Decrypt in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-exclude-ip-address-or-application-from-ssl-decrypt/m-p/191572#M57686</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/61922"&gt;@DIRTT&lt;/a&gt;I created a rule base on destination IP and it works perfectly, thanks.&lt;/P&gt;</description>
    <pubDate>Wed, 13 Dec 2017 17:39:51 GMT</pubDate>
    <dc:creator>oscaringosv</dc:creator>
    <dc:date>2017-12-13T17:39:51Z</dc:date>
    <item>
      <title>How to exclude IP address or Application from SSL Decrypt</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-exclude-ip-address-or-application-from-ssl-decrypt/m-p/190832#M57588</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hello everyone,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;How do you add an expecific application when there is no URLs inside the log?, I.E if you check the traffic logs it's showing SSL as Application and no more info rather than a destination IP that could be changing in the mayority of cases I see the "category" of the App but I don't want to exclude an entire caterory from SSL just a single App or IP Address, also in a different case I need to exclude an especific IP address from SSL decryption how do you achieve this ? thanks a lot in advance.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 08 Dec 2017 15:08:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-exclude-ip-address-or-application-from-ssl-decrypt/m-p/190832#M57588</guid>
      <dc:creator>oscaringosv</dc:creator>
      <dc:date>2017-12-08T15:08:05Z</dc:date>
    </item>
    <item>
      <title>Re: How to exclude IP address or Application from SSL Decrypt</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-exclude-ip-address-or-application-from-ssl-decrypt/m-p/190853#M57589</link>
      <description>&lt;P&gt;You can't exclude "applications" from SSL Inspection as far as I know because the traffic has to be decrypted first so the PaloAlto's can identify the application.&amp;nbsp; As for whitelisting a domain or IP all you have to do is create a rule above the SSL inspection rule that specifies source and destination (with other stuff) and then select do not decrypt.&amp;nbsp; That should do the trick just fine unless the IPs are bouncing all over the place.&amp;nbsp; Then you would need to involve something like MineMeld.&lt;/P&gt;</description>
      <pubDate>Fri, 08 Dec 2017 15:26:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-exclude-ip-address-or-application-from-ssl-decrypt/m-p/190853#M57589</guid>
      <dc:creator>DIRTT</dc:creator>
      <dc:date>2017-12-08T15:26:47Z</dc:date>
    </item>
    <item>
      <title>Re: How to exclude IP address or Application from SSL Decrypt</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/how-to-exclude-ip-address-or-application-from-ssl-decrypt/m-p/191572#M57686</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/61922"&gt;@DIRTT&lt;/a&gt;I created a rule base on destination IP and it works perfectly, thanks.&lt;/P&gt;</description>
      <pubDate>Wed, 13 Dec 2017 17:39:51 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/how-to-exclude-ip-address-or-application-from-ssl-decrypt/m-p/191572#M57686</guid>
      <dc:creator>oscaringosv</dc:creator>
      <dc:date>2017-12-13T17:39:51Z</dc:date>
    </item>
  </channel>
</rss>

