- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
11-16-2015 11:44 PM
I would like to set a no decrypt policy for the applications ms-Office365 and ms-lync. But the only option in no decrypt is for URL category. How can I configure the no decrypt?
11-17-2015 12:38 AM - edited 11-17-2015 01:38 AM
Hi,
You can create a Custom URL Category containing all of the Office365 URL's and IP ranges and use that custom category for the no decrypt policy. If SNI and/or certificate CN match then it should pick up this info :
Office 365 URLs and IP address ranges
-Kim.
11-17-2015 12:38 AM - edited 11-17-2015 01:38 AM
Hi,
You can create a Custom URL Category containing all of the Office365 URL's and IP ranges and use that custom category for the no decrypt policy. If SNI and/or certificate CN match then it should pick up this info :
Office 365 URLs and IP address ranges
-Kim.
01-08-2016 08:27 AM
Quick bump, have you verified this solution? Specifying the MS URL's in the no decryption policy to allow Lync?
Am I correct that when using App-ID (for MS-Lync), SSL decryption will be required (and probably eating up a lot of my available sessions)?
If so it would seem pretty obvious to use the MS URL's and let App-ID be for what it is, or what other disadvantage am I missing?
10-04-2017 08:32 AM
Hi,
It works fine for me with the following URLs in a custom category used in no decryption rule:
*.lync.com
*.cqd.lync.com
*.infra.lync.com
*.online.lync.com
*.resources.lync.com
*.config.skype.com
*.skypeforbusiness.com
*.pipe.aria.microsoft.com
config.edge.skype.com
pipe.skype.comaddress ranges
From:
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!