What is required to enable an HTTPS proxy?
HTTPS inspection requires the proxy to use a root/signing certificate to generate the server certificates presented to clients during decryption. Cisco Secure Web Appliance can generate this root certificate and key locally, producing a self-signed root certificate. A CSR is only a request for CA signing, not the certificate required for proxy operation.
Community Discussion