![]() |
![]() |
![]() |
![]() |
![]() |
Working With Encrypted Data > Enabling SSL Manager
|
1.
|
2.
|
3.
|
1.
|
The HTTPS Proxy Server Port is the port used for client to SSL Manager connections. The default is 8070.
|
2.
|
The SSL Outbound Port is the port used for SSL Manager to destination server connections. The default is 8090.
|
3.
|
If Content Gateway is an explicit proxy and you want to allow Skype traffic, enable the Tunnel Skype option. The option is necessary because, although Skype presents an SSL handshake, Skype data flow does not conform to the SSL standard. Unless the traffic is tunneled, the connection is dropped.
|
4.
|
To tunnel HTTPS requests when the SSL handshake results in an unknown protocol error, enable Tunnel Unknown Protocols.
|
![]() |
When Content Gateway is an explicit proxy, a URL lookup is performed and policy is applied before the SSL connection request is made. Transactions are logged as usual.
|
![]() |
When Content Gateway is a transparent proxy the lookup is not possible and tunneled transactions are not logged. This is because an initial connection is required to get the Common Name from the SSL certificate that is used for the URL lookup. If the connection handshake fails, the connection is tunneled without the proxy being aware of it.
|
Provide us feedback on your experience with the Service Request portal.
provide feedback >
![]() |
![]() |
![]() |
![]() |
![]() |
Working With Encrypted Data > Enabling SSL Manager
|