Hello,

i wonder if the IDP series (75, 250 etc) are able to decrypt SSL
sessions using keys transparently to check for IPS.
According to 
http://www.juniper.net/techpubs/en_US/idp5.0/topics/task/configuration/intrusion-detection-prevention-ssl-decryption-enabling.html
this should be possible.

I wonder if this is really transparent in terms of certificate errors
showing up on the clients browser visiting a site behind the IDP.
(Internet -> IDP -> SSL Server)
Does the IDP in this mode mangle with the SSL packets in any way?

If anyone has a setup like the above and can confirm that it works i'd
like to hear about it.


-Jonas


Attachment: signature.asc
Description: This is a digitally signed message part

_______________________________________________
juniper-nsp mailing list [email protected]
https://puck.nether.net/mailman/listinfo/juniper-nsp

Reply via email to