Hello, i wonder if the IDP series (75, 250 etc) are able to decrypt SSL sessions using keys transparently to check for IPS. According to http://www.juniper.net/techpubs/en_US/idp5.0/topics/task/configuration/intrusion-detection-prevention-ssl-decryption-enabling.html this should be possible.
I wonder if this is really transparent in terms of certificate errors showing up on the clients browser visiting a site behind the IDP. (Internet -> IDP -> SSL Server) Does the IDP in this mode mangle with the SSL packets in any way? If anyone has a setup like the above and can confirm that it works i'd like to hear about it. -Jonas
signature.asc
Description: This is a digitally signed message part
_______________________________________________ juniper-nsp mailing list [email protected] https://puck.nether.net/mailman/listinfo/juniper-nsp

