<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SSL Policy in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ssl-policy/m-p/3375585#M923960</link>
    <description>&lt;P&gt;Dear Yogdhanu,&lt;/P&gt;
&lt;P&gt;Thanks for the reply , so u r confirming&amp;nbsp; me that the SSL traffic&amp;nbsp;( what i understand means encrypted traffic)&amp;nbsp;can be on another port ( if it is used on private networks I can use private port numbers rages &amp;nbsp;which cannot be used on internet)&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;PRE&gt;The application field is for applying the rule on specific application identified by firepower before the decryption is done. Port, Application and other factors are available to make the rule as specific as it can be.&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;when the rule is matched the traffic is decrypted otherwise the default action is to Do not decrypt.&lt;/P&gt;
&lt;P&gt;Please correct me if i am wrong&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Mon, 18 Jun 2018 21:27:48 GMT</pubDate>
    <dc:creator>adamgibs7</dc:creator>
    <dc:date>2018-06-18T21:27:48Z</dc:date>
    <item>
      <title>SSL Policy</title>
      <link>https://community.cisco.com/t5/network-security/ssl-policy/m-p/3375135#M923958</link>
      <description>&lt;P&gt;Dears,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am creating a SSL policy and I m not understanding the concept of application column and port column&amp;nbsp;inside the rule,&amp;nbsp; the rule is made of, zone, network, application&amp;nbsp;, users, category port, etc etc&lt;/P&gt;
&lt;P&gt;As far I know 443 is a SSL&amp;nbsp;encrypted traffic, apart from this&amp;nbsp;443 there can be other encrypted traffic working on different port&amp;nbsp;?? I want to understand if a application&amp;nbsp;creator is building an application on&amp;nbsp; port for example 1234 so he has the ability of encryption on that application for a specific port he chooses&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:41:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ssl-policy/m-p/3375135#M923958</guid>
      <dc:creator>adamgibs7</dc:creator>
      <dc:date>2020-02-21T15:41:07Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Policy</title>
      <link>https://community.cisco.com/t5/network-security/ssl-policy/m-p/3375243#M923959</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Yes, there can be SSL traffic on ports other then 443.&lt;/P&gt;
&lt;P&gt;The application field is for applying the rule on specific application identified by firepower before the decryption is done. Port, Application and other factors are available to make the rule as specific as it can be.&lt;/P&gt;
&lt;P&gt;All of matching are in AND operation. Meaning all the criteria defined in rule should match the packet for the rule to hit.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope it helps,&lt;/P&gt;
&lt;P&gt;Yogesh&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 30 Apr 2018 07:40:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ssl-policy/m-p/3375243#M923959</guid>
      <dc:creator>yogdhanu</dc:creator>
      <dc:date>2018-04-30T07:40:16Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Policy</title>
      <link>https://community.cisco.com/t5/network-security/ssl-policy/m-p/3375585#M923960</link>
      <description>&lt;P&gt;Dear Yogdhanu,&lt;/P&gt;
&lt;P&gt;Thanks for the reply , so u r confirming&amp;nbsp; me that the SSL traffic&amp;nbsp;( what i understand means encrypted traffic)&amp;nbsp;can be on another port ( if it is used on private networks I can use private port numbers rages &amp;nbsp;which cannot be used on internet)&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;PRE&gt;The application field is for applying the rule on specific application identified by firepower before the decryption is done. Port, Application and other factors are available to make the rule as specific as it can be.&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;when the rule is matched the traffic is decrypted otherwise the default action is to Do not decrypt.&lt;/P&gt;
&lt;P&gt;Please correct me if i am wrong&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 21:27:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ssl-policy/m-p/3375585#M923960</guid>
      <dc:creator>adamgibs7</dc:creator>
      <dc:date>2018-06-18T21:27:48Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Policy</title>
      <link>https://community.cisco.com/t5/network-security/ssl-policy/m-p/3401460#M923961</link>
      <description>&lt;P&gt;Dears,&lt;/P&gt;
&lt;P&gt;Anybody can put some shade on the below discussion.&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jun 2018 21:28:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ssl-policy/m-p/3401460#M923961</guid>
      <dc:creator>adamgibs7</dc:creator>
      <dc:date>2018-06-18T21:28:40Z</dc:date>
    </item>
  </channel>
</rss>

