SSL Inspection Policy
Quantum Spark 1500, 1600, and 1800 Appliances R81.10.X Locally Managed Administration Guide|192
To add other categories:
Note - The Bypass checkbox is selected by default.
1. Click other categories and sites.
The SSL Inspection Bypass Other window opens.
2. Select the desired items.
3. Optional - Click New to add URLs or custom applications.
4. Click Apply
HTTPS Categorization
As an alternative to SSL inspection, you can enable HTTPS categorization.
HTTPS categorization allows filtering specified HTTPS URLs and applications without activating SSL traffic
inspection.
For more information, see the
HTTPS Inspection video
on the
Small Business Security video channel
.
To enable HTTPS categorization:
1. Select HTTPS Categorization.
Note - When you enable HTTPS categorization, the SSL options are not available.
2. Click Configure.
The Access Policy > Firewall Blade Control page opens.
3. Configure the settings for URL Filtering.
Note - HTTPS categorization only applies when the URL Filtering blade is turned on.
To disable SSL inspection and HTTPS categorization:
Select Off.
Upgrades in the SSL Bypass mechanism include:
n
Stop the inspection of the first connection to bypassed sites.
n
Allow bypass of Non-Browser Applications connections.
n
Allow Bypass of connections to servers that require client certificate.
n
New probing mechanism eliminates the need to inspect the first connection to an IP address unless it
is required by the policy.
IMAPS
Internet Message Access Protocol (IMAP) is an Internet standard protocol used by email clients to retrieve
email messages from a mail server over a TCP/IP connection. IMAPS refers to IMAP over SSL.
SSL traffic inspection must be activated to scan HTTP and IMAP encrypted traffic.