Advanced HTTPS Inspection features

Introduction

R82 introduces performance improvements and capabilities that enable a better and safer way to deploy HTTPS Inspection, helping organizations to reduce connectivity issues

  • Bypass Under Load - This feature allows connectivity when the Security Gateway is under heavy load (a load resulting from any reason, not necessarily from HTTPS Inspection). The Security Gateway bypasses HTTPS connection until it is stable again. During the HTTPS Inspection bypass, the Security Gateway does not inspect the HTTPS traffic payload. When the Security Gateway is stable again, HTTPS Inspection resumes automatically. This feature is disabled by default.

  • HTTPS Inspection Learning Mode - You can configure partial deployment of HTTPS Inspection to estimate its effect on connectivity and performance issues. With Learning Mode, the Security Gateway inspects a small percentage of the traffic to identify connectivity issues and estimate the expected resource consumption for the configured HTTPS Inspection policy.

  • Client side Fail-Open - The Security Gateway does not perform HTTPS Inspection on connections that failed on the client side (HTTPS Inspection is bypassed).

  • HTTPS Inspection Monitoring - Introducing the HTTPS Inspection statistics view in SmartView, including bypass/inspect statistics..

Demo Scenarios