<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: HTTPS INSPECTION in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/https-inspection/m-p/1583029#M559222</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HTTPS inspection is not supported on CSC module because HTTPS traffic is encrypted traffic hence it is not able to inspect it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In any case, only the following ports are supposed to be configured to be sent from ASA towards the CSC module:&lt;/P&gt;&lt;P&gt;&lt;SPAN class="content"&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;FTP connections opened to TCP port 21&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;HTTP connections opened to TCP port 80&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;POP3 connections opened to TCP port 110&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;SMTP connections opened to TCP port 25&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All other ports are not supported.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 24 Mar 2011 09:15:22 GMT</pubDate>
    <dc:creator>Jennifer Halim</dc:creator>
    <dc:date>2011-03-24T09:15:22Z</dc:date>
    <item>
      <title>HTTPS INSPECTION</title>
      <link>https://community.cisco.com/t5/network-security/https-inspection/m-p/1583028#M559221</link>
      <description>&lt;P&gt;Dear all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Currently im working with ASA5510 software version&amp;nbsp; (asa803-k8.bin). I have CSC module installed on it.. I tried to block the website (facebook.com) using (*facebook*). if users try to get to facebook.com using http session it is easily blocked as we needed.. but we found that users are being succeed using &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="https://facebook.com" target="_blank"&gt;https://facebook.com&lt;/A&gt;&lt;SPAN&gt; session which was not blocked by ASA. I request you to advise the best solution. Thank you.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Hari,&lt;/P&gt;</description>
      <pubDate>Tue, 26 Mar 2019 00:46:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/https-inspection/m-p/1583028#M559221</guid>
      <dc:creator>harisapkota123</dc:creator>
      <dc:date>2019-03-26T00:46:00Z</dc:date>
    </item>
    <item>
      <title>Re: HTTPS INSPECTION</title>
      <link>https://community.cisco.com/t5/network-security/https-inspection/m-p/1583029#M559222</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HTTPS inspection is not supported on CSC module because HTTPS traffic is encrypted traffic hence it is not able to inspect it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In any case, only the following ports are supposed to be configured to be sent from ASA towards the CSC module:&lt;/P&gt;&lt;P&gt;&lt;SPAN class="content"&gt;&lt;UL&gt;&lt;LI&gt;&lt;P&gt;FTP connections opened to TCP port 21&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;HTTP connections opened to TCP port 80&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;POP3 connections opened to TCP port 110&lt;/P&gt;&lt;/LI&gt;&lt;LI&gt;&lt;P&gt;SMTP connections opened to TCP port 25&lt;/P&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;All other ports are not supported.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 24 Mar 2011 09:15:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/https-inspection/m-p/1583029#M559222</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2011-03-24T09:15:22Z</dc:date>
    </item>
  </channel>
</rss>

