cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Former Member
Not applicable
Report Inappropriate Content
Message 1 of 4

HTTPS URLs are bypassing the policy

hello all,

I am facing a problem with the HTTPS websites, the HTTPS websites are bypassing the policy, when i am browsing to http websites the policy is being applied but when browsing to https websites not even a log for that websites is being logged ?!

I cant enable the content inspection in the SSL scanner because we cant distribute the certificate to all computers!! what I know about https traffic that the URL is sent without any encryption just the content!!

any help please??! it is starting remind me with the ISA

Thanks in advance.

Anas 

3 Replies
feickholt
Level 10
Report Inappropriate Content
Message 2 of 4

Re: HTTPS URLs are bypassing the policy

As long as you don't enable content inspection you can only analyze the url.host part of the url.

Using this property you can filter and define rules for bypassing the policy.

The path and file part is not avaible for HTTPS without content inspection.

Frank

Former Member
Not applicable
Report Inappropriate Content
Message 3 of 4

Re: HTTPS URLs are bypassing the policy

thank you Frank,

actually, i just need to analyze the URL.host and URL.category i dont need to analyze the content, i've enabling the Set Client Context to analyze the https URLs, but it didnt work, the https traffic is bypassing the policy.

Anas

feickholt
Level 10
Report Inappropriate Content
Message 4 of 4

Re: HTTPS URLs are bypassing the policy

You need "Set Client context" only for Blockpages (if needed)

You may try rule trace (Troubleshooting, Rule tracing central) and check why your rule does not work. Maybe your request does not trigger the rule due to a stop cycle somewhere in the beginning of your ruleset.

You Deserve an Award
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.

Community Help Hub

    New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.

  • Find Forum FAQs
  • Learn How to Earn Badges
  • Ask for Help
Go to Community Help

Join the Community

    Thousands of customers use the McAfee Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership:

  • Get helpful solutions from McAfee experts.
  • Stay connected to product conversations that matter to you.
  • Participate in product groups led by McAfee employees.
Join the Community
Join the Community