<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SSL Inbound // decrypt-unsuppot-pram in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-inbound-decrypt-unsuppot-pram/m-p/335080#M84475</link>
    <description>&lt;P&gt;NMAP Scan for server&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="raji_toor_0-1593023870449.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/26391iE5945B082D822B34/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="raji_toor_0-1593023870449.png" alt="raji_toor_0-1593023870449.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 24 Jun 2020 18:37:57 GMT</pubDate>
    <dc:creator>raji_toor</dc:creator>
    <dc:date>2020-06-24T18:37:57Z</dc:date>
    <item>
      <title>SSL Inbound // decrypt-unsuppot-pram</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-inbound-decrypt-unsuppot-pram/m-p/335074#M84474</link>
      <description>&lt;P&gt;What can i do here..Is it something we have to fix on server side or firewall.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Not Working,&amp;nbsp;Block sessions with unsupported cipher suites, Selected.&lt;/P&gt;&lt;P&gt;Protocols allowed min SSL3.0 to MAX&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="raji_toor_1-1593023342068.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/26387i2F338AB6759278E5/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="raji_toor_1-1593023342068.png" alt="raji_toor_1-1593023342068.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Working, with Block sessions with unsupported cipher suites, Un-selected.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="raji_toor_0-1593023022338.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/26386iE6B1C6F4A5CA9395/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="raji_toor_0-1593023022338.png" alt="raji_toor_0-1593023022338.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;NMAP scan of server&lt;/P&gt;&lt;DIV class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Wed, 24 Jun 2020 18:37:04 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-inbound-decrypt-unsuppot-pram/m-p/335074#M84474</guid>
      <dc:creator>raji_toor</dc:creator>
      <dc:date>2020-06-24T18:37:04Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Inbound // decrypt-unsuppot-pram</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-inbound-decrypt-unsuppot-pram/m-p/335080#M84475</link>
      <description>&lt;P&gt;NMAP Scan for server&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="raji_toor_0-1593023870449.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/26391iE5945B082D822B34/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="raji_toor_0-1593023870449.png" alt="raji_toor_0-1593023870449.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 24 Jun 2020 18:37:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-inbound-decrypt-unsuppot-pram/m-p/335080#M84475</guid>
      <dc:creator>raji_toor</dc:creator>
      <dc:date>2020-06-24T18:37:57Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Inbound // decrypt-unsuppot-pram</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-inbound-decrypt-unsuppot-pram/m-p/335176#M84483</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/56221"&gt;@raji_toor&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Was this ever working before or is this the first time you are attempting to decrypt this traffic? Setting up inbound decryption on the PFS ciphers is a bit different then it was previously because the firewall actually needs to proxy the connection instead of just decrypting the traffic in-line like it can with older ciphers.&lt;/P&gt;&lt;P&gt;Also just glancing at your cipher list you have a few being offered that the firewalls doesn't actively support. You'll want to check the available ciphers for your software release as this changes between most major releases and ensure that the firewall supports each being offered.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 25 Jun 2020 04:05:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-inbound-decrypt-unsuppot-pram/m-p/335176#M84483</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2020-06-25T04:05:36Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Inbound // decrypt-unsuppot-pram</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-inbound-decrypt-unsuppot-pram/m-p/335336#M84518</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&amp;nbsp;Yes this is my first attempt at inbound decryption, i do have outbound working for few months now.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On comparison for what is supported for 9.0 and what the nmap shows me, i see quite few are common between them.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="raji_toor_0-1593098796516.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/26416i73D9358314DEDE4E/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="raji_toor_0-1593098796516.png" alt="raji_toor_0-1593098796516.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;After enabling inbound inspection namp sees only 2, profile setting for now allows 3.0 to 1.2&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="raji_toor_1-1593098915710.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/26417i6DC34457AE11858F/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="raji_toor_1-1593098915710.png" alt="raji_toor_1-1593098915710.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;So how do i proxy the connection, the only to configure is see is to have the cert on firewall, create decryption profile and attach to decryption policy. Policy/Profile don't seem to provide any option for proxy.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 25 Jun 2020 15:37:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-inbound-decrypt-unsuppot-pram/m-p/335336#M84518</guid>
      <dc:creator>raji_toor</dc:creator>
      <dc:date>2020-06-25T15:37:40Z</dc:date>
    </item>
  </channel>
</rss>

