Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
sims
New Contributor III

ssl and ssh inspection

Hi,

How to disable ssl inspection and keep only AV and IPS

 

 

Thanks

2 REPLIES 2
Elthon_Abreu
Contributor

Elthon Abreu FCNSA v5
emnoc
Esteemed Contributor III

I would advise not todo that. Since most of the current traffic is web and HTTPS, with ssl-inspection disable and AV/IPS you will not detect any AV attacks since you can inspect the payload. Disabling ssl-inspection will hamper your security inspection and you risk exposure to these attacks. Just my 2ct opinion from a security analyst perspective

 

Ken Felix

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors