EasyManua.ls Logo

ZyXEL Communications ZyWALL 310 - Page 423

ZyXEL Communications ZyWALL 310
665 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
Chapter 46 SSL Inspection
ZyWALL Series CLI Reference Guide
423
This table lists the SSL Inspection exclusion-related commands.
Table 231 SSL Inspection Exclusion Commands
COMMAND DESCRIPTION
ssl-inspection exclude-list
Enter SSL Inspection exclude list sub-command mode.
In this mode you can add and remove the servers that are excluded from
SSL Inspection.
[no] entry {IPv4 |
IPv4_CIDR | IPv4_RANGE
| IPv6 | IPv6_PREFIX |
IPv6_RANGE |
SSL_INSPECTION_WILDCARD
_CNAME}
Identify the certificate in one of the following ways:
Type an IPv4 or IPv6 address. For example, type 192.168.1.35, or
2001:7300:3500::1
Type an IPv4/IPv6 block in CIDR notation. For example, type
192.168.1.1/24, or 2001:7300:3500::1/64
Type an IPv4/IPv6 address range by entering the start and end
addresses separated by a hyphen (-). For example, type 192.168.1.1-
192.168.1.35, or 2001:7300:3500::1-2001:7300:3500::35
Type a DNS name. For example, type www.zyxel.com.tw.
Type a common name (wildcard char: '*', escape char: '\'). Use up to
127 case-insensitive characters (0-9a-zA-Z`~!@#$%^&*()-
_=+[]{}\|;:',.<>/?). ‘*’ can be used as a wildcard to match any string.
Use ‘\*’ to indicate a single wildcard character.
Type an email address. For example, type abc@zyxel.com.tw
The no command removes the SSL entry.
[no] category
<category_name>
Sets the web categories to let SSL traffic destined for websites that belong
to these categories pass through the Zyxel Device without been inspected.
The no command removes the web categories so that SSL traffic to these
sites is inspected.
exit
Exit the sub-command mode.
show ssl-inspection
exclude-list
Displays all entries in the SSL exclusion list.
ssl-inspection exclude-
list-settings
Enter SSL Inspection exclude list settings sub-command mode.
In this mode you can configure settings for the SSL Inspection exclude list.
[no] log
Create a log for traffic that bypasses SSL Inspection.
The no command disables SSL exclusion list logging.
exit
Exit the sub-command mode.
show ssl-inspection
exclude-list settings
Displays all SSL exclusion list settings, such as whether logging is enabled.
show ssl-inspection
exclude-list address
Displays all SSL exclusion list entry settings, such as the certificate IP
addresses or DNS names.
show ssl-inspection
exclude-list web-category
Displays the web categories that lets SSL traffic destined for websites that
belong to these categories pass through the Zyxel Device without been
inspected.

Table of Contents

Other manuals for ZyXEL Communications ZyWALL 310

Related product manuals