Decryption
- For Decryption, enable Decrypt Traffic.
- Decryption is required in order to inspect traffic for threats using the intrusion prevention (IPS), file inspection, and file type blocking features. For security reasons, you should enable this option. You can enable this option depending on the resource address. For details, see information about the Internally Reachable Address field on this page
Because traffic is routed through Secure Access, Secure Access must be able to display the resource's certificate to end-user devices. If you have already uploaded the applicable certificate, select the certificate. Otherwise, upload or paste the application certificate (including both the public and private keys) used by the private resource here. Be sure to include all intermediate certificates in the certificate chain.
- If you enable decryption, the option to Validate application certificate for browser-based traffic will be disabled, even if you have previously enabled it. This is expected.
Only PEM encoding is supported.
- Decryption is required in order to inspect traffic for threats using the intrusion prevention (IPS), file inspection, and file type blocking features. For security reasons, you should enable this option. You can enable this option depending on the resource address. For details, see information about the Internally Reachable Address field on this page