cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
858
Views
0
Helpful
2
Replies

Why decrypt?

blroberts2
Frequent Visitor
Frequent Visitor

If we're strictly doing web filtering and the appliance can still detect and filter HTTPS sites with SSL inspection off, why would we want to decrypt?  Solely for the extra granularity like blocking facebook games and such?

2 Replies 2

One example could be that AMP on the WSA finds malicious downloads that your desktop AV would miss. Or Data loss prevention that you can inspect what your users are uploading to cloud-services.

--
If you found this post helpful, please give it Kudos. If my answer solves your problem, please click Accept as Solution so others can benefit from it.

Tao Yang
Cisco Employee
Cisco Employee

Another case is for user authentication, Here are the options in WSA HTTPs Proxy configuration.

Decrypt for Authentication:

Enabled

Decrypt for End-User Notification:

Enabled

Decrypt for End-User Acknowledgement:

Enabled

Decrypt for Application Detection:

Disabled