You can add an SSL Server Inspection policy to specify inbound SSL traffic that you want to protect for particular segments on a managed device, and an SSL Client Inspection policy to specify outbound SSL traffic that you want to protect for particular segments on a managed device.
SSL Inspection profiles include a set of SSL policies, each of which uses an SSL
proxy containing the information needed to determine what servers need to be decrypted.
Assign the SSL inspection policy to the inspection profile that carries the traffic
of
interest.
You must first define an SSL server proxy before you configure an SSL server
policy.
You must first define an SSL client proxy before you configure an SSL client
policy.
![]() |
Note SSL inspection cannot occur in asymmetric mode.
|
Refer to the SSL User Guide to learn more about configuring SSL inspection.