- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
09-24-2014 07:04 AM
We recently discovered that due to Facebook now being https:// that my users can get out to Facebook when using Internet Explorer. This actually cause quite an issue due to a bug also getting in.
How do I configure the decryption policy to get in to the session and block the traffic? From what I'm reading I have to configure this to block https sites?
Any assistance or advice would be greatly appreciated.
Thank you
09-24-2014 07:23 AM
Hello kaysun,
1. PAN is having app-ID for facebook. Hence, you can block facebook through a deny rule, without having SSL decryption in place. we have multiple application-ID for facebook to have more granular control.
2. In general, for HTTPS (SSL) connection, PAN will not be able to verify the content of the packet. Hence, you may use the certificate name ( through URL filtering) to control that traffic.
Hope this helps.
Thanks
09-24-2014 07:06 AM
Hi Kaysun,
Following document will help you to configure SSL decryption.
How to Implement SSL Decryption
Let me know for any query.
Regards,
Hardik Shah
09-24-2014 07:23 AM
Hello kaysun,
1. PAN is having app-ID for facebook. Hence, you can block facebook through a deny rule, without having SSL decryption in place. we have multiple application-ID for facebook to have more granular control.
2. In general, for HTTPS (SSL) connection, PAN will not be able to verify the content of the packet. Hence, you may use the certificate name ( through URL filtering) to control that traffic.
Hope this helps.
Thanks
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!