You are here
SEC0315 - PAN 9.0 SSL Decryption (Part 2)
Difficulty Level:
Lab Document:
<Please login to see the content>
Category:
Security
The video looks at various aspects around traffic decryption on Palo Alto Firewall. We will be focusing on two commonly-used SSL decryption features namely SSL Forward Proxy and SSL Inbound Inspection to inspect user outbound internet, and inbound to our public-facing server. We will look at a way to prevent FW evasion with SSH tunneling using SSH Proxy. The lab finishes with a discussion around QUIC protocol.
Part 2 of this video covers SSL Inbound Inspection
Topic:
-
SSL Forward Proxy
- Trusted Certificate
- Untrusted Certificate
- SSL Decrypt Opt-out
-
SSL Inbound Inspection
- Certificate/Key Import
- Decryption Profile
- Decryption Policy
- SSH Proxy
- Quic