    Selectively Bypassing SSL Interception on MWG




      I have a transparent deployment and have enabled the SSL scanner. the CA importing and stuff have been completed and it would intercept any HTTPS site that goes through it.

      Now what i want to do is only intercept sites like facebook.com gmail.com mail.yahoo.com

      I tried using URL does not match in list NO_SSL where NO_SSL is an wildcard expression list. if the sites aren't in the list then it doesn't go through the rest of the SSL scanner ruleset (stop ruleset).

      And I added the following wildcard expressions to the list



      *.google.* etc


      but what I see is that when a user tries to go to facebook.com it isn't intercepted. Am I missing something?


      Thanks in advance



      Rukmal Fernando