SSL Orchestration with F5



With more than 80% of page loads now encrypted with SSL/TLS, attackers commonly hide malicious payloads within encrypted traffic and use encrypted channels to evade detection during data exfiltration. Implementing a decryption and inspection policy across multiple security devices is complex, inefficient and introduces latency and increased operational costs. SSL Orchestrator provides high-performance decryption of inbound and outbound SSL/TLS traffic, allowing you to decrypt once and then steer unencrypted traffic through your perimeter security controls. Some of the key features of SSLO covered include: • SSL Visibility. Provides SSL decryption and encryption using optimised hardware, broad cipher support and flexible deployment options • Dynamic Service Chaining. Provides service insertion, service resiliency, service monitoring and load balancing across security devices • Context Engine. Make granular policy decisions on how traffic is inspected based on factors such as geolocation, IP reputation, URL categorisation etc. • Support All Inspection Devices. Support inline layer 3, inline layer 2, ICAP and receive-only modes • Transparent and Explicit Proxy. Intercept and inspect traffic without requiring any special client configuration • Support for latest SSL standards. Provides support for Perfect Forward Secrecy and graceful handling of TLS1.3


Comments