<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ssl decryption certificate in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9708#M7113</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Satish,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you signed the certificate from a trusted CA i.e entrust, go-&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;dady&lt;/SPAN&gt;, then it will not throw any certificate warning. Else, you may push the certificate to the individual machine through a server &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;( &lt;/SPAN&gt;in your network).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 27 Jul 2014 18:37:00 GMT</pubDate>
    <dc:creator>HULK</dc:creator>
    <dc:date>2014-07-27T18:37:00Z</dc:date>
    <item>
      <title>ssl decryption certificate</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9703#M7108</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI FRIENDS,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now days i am facing a challenge ssl decryption certificate. i have a create a ssl decryption policy for block few App -ID after SSL decryption we got certificate error client side any suggestion???&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Satish&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Jul 2014 16:41:16 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9703#M7108</guid>
      <dc:creator>Satish</dc:creator>
      <dc:date>2014-07-27T16:41:16Z</dc:date>
    </item>
    <item>
      <title>Re: ssl decryption certificate</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9704#M7109</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please install certificate used for decryption on end users machine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Add it to trusted root certificate list. Let me know if you need detailed instructions.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Jul 2014 17:30:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9704#M7109</guid>
      <dc:creator>hshah</dc:creator>
      <dc:date>2014-07-27T17:30:09Z</dc:date>
    </item>
    <item>
      <title>Re: ssl decryption certificate</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9705#M7110</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Sathish,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could you please confirm, if you are only getting a certificate warning or the &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;web-page&lt;/SPAN&gt; is not loading correctly. In case of a forward -proxy, if you use a self signed certificate, then it is expected. Because it will not match with existing certificate ring in &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;web-page&lt;/SPAN&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For example: &lt;/P&gt;&lt;P&gt;&lt;IMG alt="cert-warning.JPG" class="image-0 jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/14711_cert-warning.JPG" style="height: 219px; width: 620px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Secondly, there are a few applications which does not play well with decryption:&lt;/P&gt;&lt;P&gt; &lt;A href="https://live.paloaltonetworks.com/docs/DOC-1423"&gt;List of Applications Excluded from SSL Decryption&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/docs/DOC-6166"&gt;in&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please find below a reference DOC for SSL certificate: &lt;A href="https://live.paloaltonetworks.com/docs/DOC-2006"&gt;SSL Decryption Certificates&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Jul 2014 17:33:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9705#M7110</guid>
      <dc:creator>HULK</dc:creator>
      <dc:date>2014-07-27T17:33:30Z</dc:date>
    </item>
    <item>
      <title>Re: ssl decryption certificate</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9706#M7111</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thnks Dud...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Jul 2014 18:27:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9706#M7111</guid>
      <dc:creator>Satish</dc:creator>
      <dc:date>2014-07-27T18:27:35Z</dc:date>
    </item>
    <item>
      <title>Re: ssl decryption certificate</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9707#M7112</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Hardik,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is this possible without &lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;decryption cert installation on end users machine. with help of FW.if yes the how.Thanks for reply.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;Regards&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #3b3b3b; font-family: 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif;"&gt;Satish&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Jul 2014 18:31:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9707#M7112</guid>
      <dc:creator>Satish</dc:creator>
      <dc:date>2014-07-27T18:31:24Z</dc:date>
    </item>
    <item>
      <title>Re: ssl decryption certificate</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9708#M7113</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Satish,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you signed the certificate from a trusted CA i.e entrust, go-&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;dady&lt;/SPAN&gt;, then it will not throw any certificate warning. Else, you may push the certificate to the individual machine through a server &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;( &lt;/SPAN&gt;in your network).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Jul 2014 18:37:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9708#M7113</guid>
      <dc:creator>HULK</dc:creator>
      <dc:date>2014-07-27T18:37:00Z</dc:date>
    </item>
    <item>
      <title>Re: ssl decryption certificate</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9709#M7114</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Hulk Bro..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have other issue. i am try to block gtalk, facebook, youtube help of app-id. if i have create&amp;nbsp; ssl decryption policy then its working fine but cert issue only. then i have install the cert in client pc after cert issue has been resolve but i am not able to block youtube gtalk. plz suggest. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Satish&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Jul 2014 18:38:32 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9709#M7114</guid>
      <dc:creator>Satish</dc:creator>
      <dc:date>2014-07-27T18:38:32Z</dc:date>
    </item>
    <item>
      <title>Re: ssl decryption certificate</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9710#M7115</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This doc might help you to install the certificate into individual machines: &lt;A href="https://live.paloaltonetworks.com/docs/DOC-6729"&gt;How to Perform Client Certificate Install for SSL Decryption&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As per my knowledge, google services will not play well with SSL decryption &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;( &lt;/SPAN&gt;google chrome as a browser), hence, could you please try to access through a different browser &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;( &lt;/SPAN&gt;&lt;SPAN class="GINGER_SOFTWARE_mark"&gt;mozilla&lt;/SPAN&gt;, IE) and let us know the result.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://live.paloaltonetworks.com/docs/DOC-6166"&gt;in&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Jul 2014 18:48:50 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/9710#M7115</guid>
      <dc:creator>HULK</dc:creator>
      <dc:date>2014-07-27T18:48:50Z</dc:date>
    </item>
  </channel>
</rss>

