<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco FirePOWER SSL Block in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-firepower-ssl-block/m-p/4693743#M1093666</link>
    <description>&lt;P&gt;Probably a long shot but I am also seeing this.&amp;nbsp; We enabled a monitor only rule to check for TLS versions and then a default rule of do not decrypt but still see a SSL block with that same SSL error which I find odd&amp;nbsp;&amp;nbsp;&lt;A target="_blank"&gt;DEFER_CUT_POST_CCS&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 26 Sep 2022 13:41:19 GMT</pubDate>
    <dc:creator>Isaac Smith</dc:creator>
    <dc:date>2022-09-26T13:41:19Z</dc:date>
    <item>
      <title>Cisco FirePOWER SSL Block</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-ssl-block/m-p/3912592#M17608</link>
      <description>&lt;P&gt;Currently using FirePOWER, experiencing an unexpected SSL Block for some traffic, SSL rule has been created not to decrypt the traffic, URLs that are being accessed are whitelisted, SSL Flow error is Defer Cut Post CCs (0x0000197), SSL version TLSV1.2, The SSL flow flags show the handshake to be complete but yet FirePOWER is still blocking the traffic, I have an access policy for the internal source to allow all traffic from any network, any insight would be greatly appreciated. The service attempting to access my internal VMS is WISENet WAVESync&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Aug 2019 20:02:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-ssl-block/m-p/3912592#M17608</guid>
      <dc:creator>chris.makely</dc:creator>
      <dc:date>2019-08-22T20:02:04Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FirePOWER SSL Block</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-ssl-block/m-p/3913252#M17609</link>
      <description>&lt;P&gt;Have you tried a packet capture with trace while filtering on the interesting traffic?&lt;/P&gt;</description>
      <pubDate>Fri, 23 Aug 2019 18:07:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-ssl-block/m-p/3913252#M17609</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2019-08-23T18:07:23Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FirePOWER SSL Block</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-ssl-block/m-p/3914097#M17610</link>
      <description>&lt;P&gt;Marvin,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have not yet, that was my next step, i'll post with that data soon, thank you for the insight&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 26 Aug 2019 15:33:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-ssl-block/m-p/3914097#M17610</guid>
      <dc:creator>chris.makely</dc:creator>
      <dc:date>2019-08-26T15:33:46Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FirePOWER SSL Block</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-ssl-block/m-p/4693743#M1093666</link>
      <description>&lt;P&gt;Probably a long shot but I am also seeing this.&amp;nbsp; We enabled a monitor only rule to check for TLS versions and then a default rule of do not decrypt but still see a SSL block with that same SSL error which I find odd&amp;nbsp;&amp;nbsp;&lt;A target="_blank"&gt;DEFER_CUT_POST_CCS&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 26 Sep 2022 13:41:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-ssl-block/m-p/4693743#M1093666</guid>
      <dc:creator>Isaac Smith</dc:creator>
      <dc:date>2022-09-26T13:41:19Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco FirePOWER SSL Block</title>
      <link>https://community.cisco.com/t5/network-security/cisco-firepower-ssl-block/m-p/4718873#M1094962</link>
      <description>&lt;P&gt;same exact error here.&amp;nbsp; firepower ignores the "do not decrypt" SSL rule and gets blocked by default SSL rule.&amp;nbsp; undecryptable actions are both block so no help there.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Nov 2022 18:53:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-firepower-ssl-block/m-p/4718873#M1094962</guid>
      <dc:creator>tato386</dc:creator>
      <dc:date>2022-11-09T18:53:43Z</dc:date>
    </item>
  </channel>
</rss>

