<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Encrypted Visibility Engine (EVE) vs SSL Decryption on FTD in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/encrypted-visibility-engine-eve-vs-ssl-decryption-on-ftd/m-p/4844745#M1100992</link>
    <description>&lt;P&gt;With respect to perimeter firewall settings, you are correct.&lt;/P&gt;
&lt;P&gt;However, the perimeter firewall is only one of several means to protect against malware. Endpoint security, email security and other methods can be used to avoid and deny malware incursions as well.&lt;/P&gt;</description>
    <pubDate>Mon, 29 May 2023 13:16:15 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2023-05-29T13:16:15Z</dc:date>
    <item>
      <title>Encrypted Visibility Engine (EVE) vs SSL Decryption on FTD</title>
      <link>https://community.cisco.com/t5/network-security/encrypted-visibility-engine-eve-vs-ssl-decryption-on-ftd/m-p/4838307#M1100523</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We see "Encrypted Visibility Engine" (EVE) on the FTD is supposed to replace the SSL Decryption feature.&lt;/P&gt;
&lt;P&gt;Our requirement is to fully detect and block malware over encrypted traffic (HTTPS).&amp;nbsp;&lt;/P&gt;
&lt;P&gt;At the present time (May 2023) is safe to use EVE instead of SSL Decryption on new implementations of FTD? Im using FTD 7.2&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;On release 7.2. If we enable only EVE and NOT SSL decryption, is it correct that the IPS and File and malware blocking rules don't work (block) malware traffic over the encrypted https traffic?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;CT&lt;/P&gt;</description>
      <pubDate>Thu, 18 May 2023 13:33:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/encrypted-visibility-engine-eve-vs-ssl-decryption-on-ftd/m-p/4838307#M1100523</guid>
      <dc:creator>Carlos T</dc:creator>
      <dc:date>2023-05-18T13:33:08Z</dc:date>
    </item>
    <item>
      <title>Re: Encrypted Visibility Engine (EVE) vs SSL Decryption on FTD</title>
      <link>https://community.cisco.com/t5/network-security/encrypted-visibility-engine-eve-vs-ssl-decryption-on-ftd/m-p/4840390#M1100697</link>
      <description>&lt;P&gt;EVE&amp;nbsp; does not replace SSL decryption. Instead it gives some ability to inspect an SSL/TLS-protected flow by discerning what it can from things like the SSL handshake. That's very different from decrypting and inspecting the encrypted payload.&lt;/P&gt;</description>
      <pubDate>Mon, 22 May 2023 17:18:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/encrypted-visibility-engine-eve-vs-ssl-decryption-on-ftd/m-p/4840390#M1100697</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2023-05-22T17:18:15Z</dc:date>
    </item>
    <item>
      <title>Re: Encrypted Visibility Engine (EVE) vs SSL Decryption on FTD</title>
      <link>https://community.cisco.com/t5/network-security/encrypted-visibility-engine-eve-vs-ssl-decryption-on-ftd/m-p/4844740#M1100991</link>
      <description>&lt;P&gt;Thanks Marvin, so just to be 100% clear, at the present time (May 2023), if we want to have a safe and secure environment, we should keep using SSL decryption for malware detection and blocking and IPS filtering. Is this correct?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I understand that if we have only EVE, but NOT SSL decryption, we are still at risk of passing malware or the IPS engine not detecting malicious connections on HTTPs traffic. Do you agree with this?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;CT&lt;/P&gt;</description>
      <pubDate>Mon, 29 May 2023 13:10:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/encrypted-visibility-engine-eve-vs-ssl-decryption-on-ftd/m-p/4844740#M1100991</guid>
      <dc:creator>Carlos T</dc:creator>
      <dc:date>2023-05-29T13:10:50Z</dc:date>
    </item>
    <item>
      <title>Re: Encrypted Visibility Engine (EVE) vs SSL Decryption on FTD</title>
      <link>https://community.cisco.com/t5/network-security/encrypted-visibility-engine-eve-vs-ssl-decryption-on-ftd/m-p/4844745#M1100992</link>
      <description>&lt;P&gt;With respect to perimeter firewall settings, you are correct.&lt;/P&gt;
&lt;P&gt;However, the perimeter firewall is only one of several means to protect against malware. Endpoint security, email security and other methods can be used to avoid and deny malware incursions as well.&lt;/P&gt;</description>
      <pubDate>Mon, 29 May 2023 13:16:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/encrypted-visibility-engine-eve-vs-ssl-decryption-on-ftd/m-p/4844745#M1100992</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2023-05-29T13:16:15Z</dc:date>
    </item>
  </channel>
</rss>

