SSL inbound deep inspection
Hello,
I have these 2 doubts:
1- If I want to protect a web server NATed to internet , I can do this only with a normal VIP and SSL inspection , right?
I mean I do NOT need to enable Load Balance feature like this example:
2- And if I want to protect for example an email server (encrypted traffic) in the SSL inspection profile ,under
"Protocol Port Mapping" I have these 2 choices right:
- select "Inspect all ports"
or
- on "HTTPS" add the ports that I want (i.e 25,587,465)
With any of these 2 I would be protecting my email server from malware and other attacks (with AV/IPS profiles) right?
Thank you in advace
Regards
