<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Firepower SSL decrypt and pass without encrypt in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/firepower-ssl-decrypt-and-pass-without-encrypt/m-p/3797706#M1011043</link>
    <description>&lt;P&gt;Hello everyone,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have ASA5525X with Firepower SFR module where we are implementin SSL decryption with known key for internal servers. Right now we are planning changing our Citrix Netscaler load-balancers with F5 and security department is going implement second SSL decryption for WAF features work. So in this scenario the performance of sll traffic warns me. What i want to know whether it is possible in Firepower configuration to decrypt, inspect and pass without encrypting back as plain text so that F5 won`t do decyrption process again.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks in advance!&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 14:16:56 GMT</pubDate>
    <dc:creator>orkhan.rustamli.96</dc:creator>
    <dc:date>2019-03-12T14:16:56Z</dc:date>
    <item>
      <title>Firepower SSL decrypt and pass without encrypt</title>
      <link>https://community.cisco.com/t5/network-security/firepower-ssl-decrypt-and-pass-without-encrypt/m-p/3797706#M1011043</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We have ASA5525X with Firepower SFR module where we are implementin SSL decryption with known key for internal servers. Right now we are planning changing our Citrix Netscaler load-balancers with F5 and security department is going implement second SSL decryption for WAF features work. So in this scenario the performance of sll traffic warns me. What i want to know whether it is possible in Firepower configuration to decrypt, inspect and pass without encrypting back as plain text so that F5 won`t do decyrption process again.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks in advance!&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 14:16:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-ssl-decrypt-and-pass-without-encrypt/m-p/3797706#M1011043</guid>
      <dc:creator>orkhan.rustamli.96</dc:creator>
      <dc:date>2019-03-12T14:16:56Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower SSL decrypt and pass without encrypt</title>
      <link>https://community.cisco.com/t5/network-security/firepower-ssl-decrypt-and-pass-without-encrypt/m-p/3798244#M1011044</link>
      <description>&lt;P&gt;I know what you mean and have use other ADCs (Netscaler) to decrypt and pass on unencrypted. Unfortunately that's not currently an option with firepower (as of the current 6.3 release).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Even if you decrypt with a known key, Firepower will reencrypt after evaluating access control rules and passing the traffic on to the destination.&lt;/P&gt;</description>
      <pubDate>Sat, 09 Feb 2019 03:54:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-ssl-decrypt-and-pass-without-encrypt/m-p/3798244#M1011044</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-02-09T03:54:49Z</dc:date>
    </item>
    <item>
      <title>Re: Firepower SSL decrypt and pass without encrypt</title>
      <link>https://community.cisco.com/t5/network-security/firepower-ssl-decrypt-and-pass-without-encrypt/m-p/3798917#M1011045</link>
      <description>&lt;P&gt;Thanks, Marvin, for you repsonse.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Feb 2019 06:19:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/firepower-ssl-decrypt-and-pass-without-encrypt/m-p/3798917#M1011045</guid>
      <dc:creator>orkhan.rustamli.96</dc:creator>
      <dc:date>2019-02-11T06:19:40Z</dc:date>
    </item>
  </channel>
</rss>

