<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco FTD SSL Policy causing issue on Media Communication such as Skype and Viber text messages in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-ftd-ssl-policy-causing-issue-on-media-communication-such/m-p/4277572#M1077566</link>
    <description>&lt;P&gt;Dear community,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have installed Cisco Firepower 2010 installed, and I manage it via FMC.&amp;nbsp;I have setup the policies and traffic is all working ok without SSL decryption policy. However when I enable SSL decryption policy, my text messages do not go through the network. Communication with the Internet works fine, but Skype and Viber text messages do not go through.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have tested it myself and as soon as I remove SSL decryption Policy from the Access Policy, text messages pass through the traffic properly.&amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;Do you have any idea why and what could be affecting the text messages communication to not go through from an SSL decryption policy perspective?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;From my general knowledge, SSL decryption policy is used to only decrypt traffic but not manage communication access. Am I missing something?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any suggestion or information provided would be highly appreciated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;L&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 22 Jan 2021 12:45:33 GMT</pubDate>
    <dc:creator>laurathaqi</dc:creator>
    <dc:date>2021-01-22T12:45:33Z</dc:date>
    <item>
      <title>Cisco FTD SSL Policy causing issue on Media Communication such as Skype and Viber text messages</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ftd-ssl-policy-causing-issue-on-media-communication-such/m-p/4277572#M1077566</link>
      <description>&lt;P&gt;Dear community,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have installed Cisco Firepower 2010 installed, and I manage it via FMC.&amp;nbsp;I have setup the policies and traffic is all working ok without SSL decryption policy. However when I enable SSL decryption policy, my text messages do not go through the network. Communication with the Internet works fine, but Skype and Viber text messages do not go through.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have tested it myself and as soon as I remove SSL decryption Policy from the Access Policy, text messages pass through the traffic properly.&amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;/P&gt;&lt;P&gt;Do you have any idea why and what could be affecting the text messages communication to not go through from an SSL decryption policy perspective?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;From my general knowledge, SSL decryption policy is used to only decrypt traffic but not manage communication access. Am I missing something?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any suggestion or information provided would be highly appreciated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you,&lt;/P&gt;&lt;P&gt;L&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 22 Jan 2021 12:45:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ftd-ssl-policy-causing-issue-on-media-communication-such/m-p/4277572#M1077566</guid>
      <dc:creator>laurathaqi</dc:creator>
      <dc:date>2021-01-22T12:45:33Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FTD SSL Policy causing issue on Media Communication such as Skype and Viber text messages</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ftd-ssl-policy-causing-issue-on-media-communication-such/m-p/4277787#M1077574</link>
      <description>&lt;P&gt;Those applications and others (WhatsApp, Telegram etc.) use end-to-end encryption with SSL/TLS certificate pinning. So any man-in-the-middle decrypt and re-sign action (such as the FTD does) will break that trust chain and cause the issues you report. You need to exempt those applications from your SSL policy for them to work.&lt;/P&gt;</description>
      <pubDate>Fri, 22 Jan 2021 17:56:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ftd-ssl-policy-causing-issue-on-media-communication-such/m-p/4277787#M1077574</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2021-01-22T17:56:30Z</dc:date>
    </item>
  </channel>
</rss>

