nerdexam
Palo_Alto_Networks

NETSEC-PRO · Question #46

How does a firewall behave when SSL Inbound Inspection is enabled?

The correct answer is D. It acts as meddler-in-the-middle between the client and the internal server.. SSL Inbound Inspection allows the firewall to decrypt incoming encrypted traffic to internal servers (e.g., web servers) by acting as a man-in-the-middle (MITM). The firewall uses the private key of the server to decrypt the session and apply security policies before re-encryptin

Decryption and SSL/TLS Inspection

Question

How does a firewall behave when SSL Inbound Inspection is enabled?

Options

  • AIt acts transparently between the client and the internal server.
  • BIt decrypts inbound and outbound SSH connections.
  • CIt decrypts traffic between the client and the external server.
  • DIt acts as meddler-in-the-middle between the client and the internal server.

How the community answered

(22 responses)
  • A
    18% (4)
  • B
    5% (1)
  • C
    5% (1)
  • D
    73% (16)

Explanation

SSL Inbound Inspection allows the firewall to decrypt incoming encrypted traffic to internal servers (e.g., web servers) by acting as a man-in-the-middle (MITM). The firewall uses the private key of the server to decrypt the session and apply security policies before re-encrypting the SSL Inbound Inspection requires you to import the server's private key and certificate into the firewall. The firewall then acts as a man-in-the-middle (MITM) to decrypt inbound sessions from external clients to internal servers for inspection.

Topics

#SSL Inbound Inspection#decryption#meddler-in-the-middle#NGFW

Community Discussion

No community discussion yet for this question.

Full NETSEC-PRO Practice