SSL Inspection Policy
Quantum Spark 1500, 1600 and 1800 Appliance Series R80.20.40 Locally Managed Administration Guide | 195
HTTPS Categorization
As an alternative to SSL inspection, you can enable HTTPS categorization.
HTTPS categorization allows filtering specified HTTPS URLs and applications without activating SSL traffic
inspection.
For more information, see the
on the
Small Business Security video channel
.
To enable HTTPS categorization:
1. Select
HTTPS Categorization
.
Note - When you enable HTTPS categorization, the SSL options are not available.
2. Click
Configure
.
The
Access Policy
>
Firewall Blade Control
page opens.
3. Configure the settings for URL Filtering.
Note - HTTPS categorization only applies when the URL Filtering blade is turned on.
To disable SSL inspection and HTTPS categorization:
Select
Off
.
Upgrades in the SSL Bypass mechanism include:
n
Stop the inspection of the first connection to bypassed sites.
n
Allow bypass of Non-Browser Applications connections.
n
Allow Bypass of connections to servers that require client certificate.
n
New probing mechanism eliminates the need to inspect the first connection to an IP address unless it
is required by the policy.
IMAPS
Internet Message Access Protocol (IMAP) is an Internet standard protocol used by email clients to retrieve
email messages from a mail server over a TCP/IP connection. IMAPS refers to IMAP over SSL.
SSL traffic inspection must be activated to scan HTTP and IMAP encrypted traffic.