Showing results for 
Show  only  | Search instead for 
Did you mean: 
Please sign in to see details of an important advisory in our Customer Advisories area.

Who rated this post

L3 Networker

For Inbound Decryption, the server cert can be signed by a Public CA. The firewall does need the private key of the cert though.


For Forward Proxy, it doesn't matter since you can't get a CA cert from a Public CA. Someone like godaddy will not let you sign certs for them. You can use firewall generated or private PKI. 

Sr. Technical Support Engineer, Strata

View solution in original post

Who rated this post