05-28-2013 05:32 AM
SSL decryption Policy question, how can I know that traffic is hitting a configured decryption policy ?
There's nothing in the Monitor Tab for decryption policies, nor can I get anything out of the CLI command "show log traffic rule equal DECRYPTION-RULE-NAME" ,
any ideas ?
09-06-2022 10:08 AM
That is fine but how do you find which decryption policy it is hitting?
09-06-2022 12:02 PM - edited 09-06-2022 12:09 PM
Hello,
There are a lot of hidden Columns in the logs. To add them into the view, click one of the column headers and then hover your mouse over the Columns chevron and the display options appear.
The ones you will want to have checked are the following:
Hope that helps.
09-06-2022 02:03 PM
"Decryption Rule" must be a 10.x specific column as that does not show up in 9.x. However, you can test which decryption rule would apply to a given source/destination by using the 'Test Policy Match" tool at the bottom of the Decryption Policy page.
09-06-2022 02:07 PM
Hey, Adrian Thank you for the help.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!