Chapter 22 SSL Inspection
USG FLEX H Series User’s Guide
326
Figure 201 Security Service > SSL Inspection > Exclude List
The following table describes the fields in this screen.
Table 163 Security Service > SSL Inspection > Exclude List
LABEL DESCRIPTION
General Settings
Enable Logs for
Exclude List
Click this to create a log for traffic that bypasses SSL Inspection.
Exclude List
Address Settings
Use this part of the screen to create, edit, or delete items in the SSL Inspection exclusion list.
Add Click this to create a new entry.
Edit Select an entry and click this to be able to modify it.
Remove Select a row and click this to delete it.
Content SSL traffic to a server to be excluded from SSL Inspection is identified by its certificate. Identify
the certificate in one of the following ways:
• The Common Name (CN) of the certificate. The common name of the certificate can be
created in the System > Certificate > My Certificates screen.
• Type an IPv4 address. For example, type 192.168.1.35
• Type an IPv4 in CIDR notation. For example, type 192.168.1.1/24
• Type an IPv4 address range. For example, type 192.168.1.1-192.168.1.35
• Type an email address. For example, type abc@zyxel.com.tw
• Type a DNS name or a common name (wildcard char: '*', escape char: '\'). Use up to 127
case-insensitive characters (0-9a-zA-Z`~!@#$%^&*()-_=+[]{}\|;:',.<>/?). ‘*’ can be used as
a wildcard to match any string. Use ‘\*’ to indicate a single wildcard character.
Apply Click Apply to save your settings to the Zyxel Device.
Reset Click Reset to return to the profile summary page without saving any changes.