Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

Can the VM Firewall decrypt, inspect, and re-encrypt SSH traffic?

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Can the VM Firewall decrypt, inspect, and re-encrypt SSH traffic?

L0 Member

We have to use SFTP, which uses SSH, for some AWS transfers.  We wish to do deep packet inspection.  Can the PA VM-FW accomplish that?  Thanks.

1 accepted solution

Accepted Solutions

Cyber Elite
Cyber Elite

Hi @JimmyChernega ,

 

On this URL -> https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/decryption/decryption-concepts/ssh-proxy, scroll down to the bottom, last sentence under #7.  "The firewall only looks for SSH port forwarding, it does not perform content and threat inspection on SSH tunnels."  It only blocks the ssh-tunnel app.

 

Thanks,

 

Tom

Help the community: Like helpful comments and mark solutions.

View solution in original post

1 REPLY 1

Cyber Elite
Cyber Elite

Hi @JimmyChernega ,

 

On this URL -> https://docs.paloaltonetworks.com/pan-os/9-1/pan-os-admin/decryption/decryption-concepts/ssh-proxy, scroll down to the bottom, last sentence under #7.  "The firewall only looks for SSH port forwarding, it does not perform content and threat inspection on SSH tunnels."  It only blocks the ssh-tunnel app.

 

Thanks,

 

Tom

Help the community: Like helpful comments and mark solutions.
  • 1 accepted solution
  • 2225 Views
  • 1 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!