Skip to main content
van_sta
Explorer III
February 19, 2025
Question

SSl SSH inspection exempt

  • February 19, 2025
  • 1 reply
  • 856 views

Good morning, I have a question regarding SSL/ssh inspection, on some machines that are used for development I had to exclude the following domains since they could not access the pages they needed:

sourceforge.net

developers.facebook.com

dl.google.com

repo.maven.apache.org

upload.video.google.com

gitlab.com

www.jetbrains.com

Information Technology Category

we already have the certificate installed in the browsers but in this case how to do it, they use php storm, android studio to program. Those machines use Debian and Ubuntu.

I don't think it's safe to leave so many pages excluded. ssl ssh inspection.png

 

What would be your recommendations in this regard?

Thanks

1 reply

AEK
SuperUser
SuperUser
February 19, 2025

Hello Van

Trusted sites are basically safe to exclude from deep, since there is extremely low probability to receive anything harmful from them.

For other sites where people can share programs and scripts I think it is safer to enable deep inspection.

AEK
Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!