636-555-3226 wrote: » once you get past the 101-script kiddies using off the shelf malware you're into custom encryption land, and your man-in-the-middle SSL interceptor doesn't know what to do with it, so you either allow it to pass uninspected or you terminate the connection at the gateway and say tough love to the end-user (most often) or hacker (on occasion).
bharath917 wrote: » ... firewall does not have trusted root Certificates.
bharath917 wrote: » I want to know how firewall verifies Certificate of the Server, because firewall does not have trusted root Certificates.Kindly let me know if there is any book which has more details about this...
CarlSaiyed wrote: » In addition to above response by JollyFrogs, most modern MITM-capable devices will allow you to load root CAs not currently on the device.