Contents
What is TLS inspection?
Transport Layer Security Inspection (TLSI), also known as Transport Layer Security (TLS) break and inspect, is a security mechanism that allows enterprises to decrypt traffic, inspect the decrypted content for threats, and then re-encrypt the traffic before it enters or leaves the network.
What is zscaler SSL inspection?
When you enable SSL inspection, the Zscaler service establishes a separate SSL tunnel with the user’s browser and with the destination server. It sends the browser the Zscaler intermediate certificate or your organization’s custom intermediate root as well as a server certificate signed by the Zscaler intermediate CA.
How do you get a TLS inspection?
To do TLS inspection right, your firewall must present a valid certificate to the end device. Often this means installing a root certificate on your endpoints so that they trust the firewall, avoiding the security message above and allowing the firewall to act as a proxy for any SSL/TLS sessions that are initiated.
How do I check my SSL inspection?
To test SSL inspection:
- Compile a list of the websites and applications that your organization uses for everyday operations.
- Enable SSL inspection for the websites and applications from the list by configuring the SSL Inspection policy, and then have the users test them.
What is the purpose of SSL / TLS inspection?
SSL/TLS Inspection or HTTPS Interception is the process of intercepting SSL/TLS encrypted internet communication between the client and server.
Do you need a certificate to use TLS?
Yes, most websites that conduct business on the internet require a digital TLS/SSL certificate to encrypt and secure private data that is transmitted. TLS/SSL certificates protect your business’ and your customers private information.
When do I need to perform a HTTPS inspection?
Organizations that have performed a risk assessment and determined that HTTPS inspection is a requirement should ensure their HTTPS inspection products are performing correct transport layer security (TLS) certificate validation.
Can a decryption profile override a TLS inspection rule?
The decryption profile attached to an SSL/TLS inspection rule can override these actions for the rule. Re-signing certificates must be trusted by the endpoint devices. If they aren’t, browsers will show a warning and may refuse to complete the connection.