App-ID with encrypted sharepoint app

L4 Transporter

App-ID with encrypted sharepoint app

Hello Experts 


Just want to ask something, If I am running sharepoint application on https like https://myintranet then firewall will classify this application into what? Just SSL or sharepoint as well

L6 Presenter

Re: App-ID with encrypted sharepoint app

Not sure about this app but most likely as SSL. Since the traffic is encrypted Palo will not be able to see what is inside (data, other app etc). SSL decryption is way to go but it is getting harder and harder to decrypt the traffic due to cert pinning

L4 Transporter

Re: App-ID with encrypted sharepoint app



But how PA is able to recognize the fb-base although its also encrypted? through certificate name in SSL hello exchange after tcp connection? In this case PA will not be able to recognize my application because its name is https://myintranet. Am I right?

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!