cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
286
Views
0
Helpful
1
Replies

Firepower Decrypt Known key for Proxy

raymondluis13
Level 1
Level 1

So i have a proxy and FTD. Every connection to the internet goes to proxy, and use proxy certificate. The problems are, proxy only decrypt/ resign HTTPS traffics. So i want the firepower to inspect other encrypted traffics such as FTPS and other traffics that proxy cant inspect. Can i use decrypt known key on firepower using proxy certificate and private key?

Other things i want to ask, does proxy only issued certificate for HTTPS traffics or proxy issued certificate for every traffics that goes through proxy. also if proxy only issued certificate to HTTPS traffics, how can i make firepower to decrypt traffics other than HTTPS. Thank you

RL
1 Reply 1

balaji.bandi
Hall of Fame
Hall of Fame

Since WSA meant the https decryption only for the web traffic.

if you like use FTD and have IPS Lincese you can use filters to analyse the traffic : example videos :

https://www.youtube.com/watch?v=a4ahGktYIv8

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Review Cisco Networking products for a $25 gift card