<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SSL decryption policy for all HTTPS traffic in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-policy-for-all-https-traffic/m-p/11653#M8566</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Sir,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;i&lt;/SPAN&gt; understand your requirement correctly, are you looking for an option to bypass Decryption policy. If so, there is a facility to negate source and destination address as mentioned below.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="Decryption-policy.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/12068_Decryption-policy.JPG.jpg" style="width: 620px; height: 349px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 11 Mar 2014 06:52:48 GMT</pubDate>
    <dc:creator>HULK</dc:creator>
    <dc:date>2014-03-11T06:52:48Z</dc:date>
    <item>
      <title>SSL decryption policy for all HTTPS traffic</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-policy-for-all-https-traffic/m-p/11652#M8565</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there a way to have a policy for the purpose of not decrypting all https traffic?&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 10 Mar 2014 21:43:55 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-policy-for-all-https-traffic/m-p/11652#M8565</guid>
      <dc:creator>MMCiobanu</dc:creator>
      <dc:date>2014-03-10T21:43:55Z</dc:date>
    </item>
    <item>
      <title>Re: SSL decryption policy for all HTTPS traffic</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-policy-for-all-https-traffic/m-p/11653#M8566</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Sir,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If &lt;SPAN class="GINGER_SOFTWARE_mark"&gt;i&lt;/SPAN&gt; understand your requirement correctly, are you looking for an option to bypass Decryption policy. If so, there is a facility to negate source and destination address as mentioned below.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="Decryption-policy.JPG.jpg" class="jive-image" src="https://live.paloaltonetworks.com/legacyfs/online/12068_Decryption-policy.JPG.jpg" style="width: 620px; height: 349px;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Mar 2014 06:52:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-policy-for-all-https-traffic/m-p/11653#M8566</guid>
      <dc:creator>HULK</dc:creator>
      <dc:date>2014-03-11T06:52:48Z</dc:date>
    </item>
    <item>
      <title>Re: SSL decryption policy for all HTTPS traffic</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-policy-for-all-https-traffic/m-p/11654#M8567</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What I would like is, to be able to NOT DECRYPT any web browsing traffic on port 443. &lt;/P&gt;&lt;P&gt;I have looked at creating a Decryption Policy Rule, but I don't have an option to add the application, it is only seem to be based on source and destination, as well as URL category.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Mar 2014 17:04:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-policy-for-all-https-traffic/m-p/11654#M8567</guid>
      <dc:creator>MMCiobanu</dc:creator>
      <dc:date>2014-03-11T17:04:13Z</dc:date>
    </item>
    <item>
      <title>Re: SSL decryption policy for all HTTPS traffic</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-policy-for-all-https-traffic/m-p/11655#M8568</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That's the problem... the application _IS_ SSL until you decrypt it.&amp;nbsp; You must decrypt it in order to see what is inside.&amp;nbsp; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Mar 2014 17:07:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-policy-for-all-https-traffic/m-p/11655#M8568</guid>
      <dc:creator>jvalentine</dc:creator>
      <dc:date>2014-03-11T17:07:08Z</dc:date>
    </item>
  </channel>
</rss>

