Adding a Custom Pattern for Intelligent Decryption Parent topic

Intelligent decryption is designed to bypass HTTPS decryption for application-based HTTPS traffic. You can add custom intelligent decryption pattens to better manage decryption of application traffic over browsers that are not included in the built-in Defined pattern list.

Procedure

  1. Go to PolicyIntelligent Decryption.
  2. Enable the custom pattern detection by clicking on Enable.
    Enabling custom pattern detection allows Deep Discovery Web Inspector to detect the pattern generated from the following step.
  3. Copy the URL displayed in URL used to for browser pattern check (https://{DDWI_hostname}/check_browser.html) to the client's browser for which you want to detect and add the custom pattern and then hit Enter.
    The Deep Discovery Web Inspector Supported Browser page open and displays information about the browser including the Signature (example: 17e5f659107133474090194f5e4e6713), which is used to generate the custom pattern.
    This information is also recorded as an entry in the Detect and Add Pattern list on the Intelligent Decryption screen. You can now add the entry to the Defined Patterns list.
    Note
    Note
    If the resultant pattern is already in the Defined Patterns list, it is not displayed in the Detect and Add Pattern list.
    It is possible that a pattern is a duplicate even if the browser or version number differs from the one listed in the Defined Patterns list. It is also possible that the Defined Patterns list contains multiple patterns for the same browser and version number.
  4. In the Detect and Add Pattern list, find the new custom pattern entry and then click on Add Pattern Name under the Action column.
    The Add Pattern Name screen opens.
  5. Enter a Pattern name, and then click Add.
    The pattern is added to the Defined Patterns list. By default, the status is set to Decrypt.
    Note
    Note
    All the patterns with status Decrypt are decrypted and subject to the configured Deep Discovery Web Inspector policy rules for subsequent inspection.
  6. (Optional): If you do not want traffic from this pattern decrypted, select the pattern and then click on Do Not Decrypt.

What to do next

You can continue to add custom patterns to the Defined Patterns list by performing the procedure for each client/browser type and version for which you want to apply intelligent decryption.