Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ramiroATC
New Contributor

SSL/SSH inspection

.

1 REPLY 1
jhussain_FTNT

Hi,

 

Deep inspection (also known as SSL/SSH inspection) is typically applied to outbound policies where destinations are unknown. Depending on your policy requirements, you can configure the following:

  • Which CA certificate will be used to decrypt the SSL encrypted traffic
  • Which SSL protocols will be inspected
  • Which ports will be associated with which SSL protocols for inspection
  • Whether or not to allow invalid SSL certificates
  • Whether or not SSH traffic will be inspected
  • Which addresses or web category allowlists can bypass SSL inspection

Kindly refer the below document which explain about the SSL/SSH inspection.

https://docs.fortinet.com/document/fortigate/7.2.4/administration-guide/929997/ssl-ssh-inspection

 

Regards

Jamal

Labels
Top Kudoed Authors