QuestionQ9

Decryption Policies to Control HTTPS Traffic

Drag the actions into the order in which they occur as an HTTPS session passes through the Cisco WSA.

Drag & Drop
Server replies with server certificate to Cisco WSA
Encryption data channel is established
Client sends the session key, which is encrypted by using public key of the server certificate
Client sends a hello message to Cisco WSA
Cisco WSA replies with a proxied certificate of the destination server to the client
step 1
step 2
step 3
step 4
step 5
Explanation

For HTTPS proxy/decryption, Cisco WSA first receives the client TLS hello and establishes the corresponding connection to the destination server, which supplies its certificate. WSA then sends the client a proxied certificate for that destination, allowing the client to encrypt and send the session key. Once the TLS key exchange completes, the encrypted data channel is established.

Community Discussion

No comments yet. Be the first to start the discussion!