Internal server details (inbound decryption)
Protect your internal servers by decrypting and optionally inspecting traffic directed to them. Add internal servers you wish to protect using network objects, and optionally, ports to specify these servers.
Network conditions and tunnel rules
Networks control or decrypt traffic based on its source and destination IP address, using inner headers. Tunnel rules, which use outer headers, have tunnel endpoint conditions instead of network conditions.
You can use predefined objects to build network conditions, or manually specify individual IP addresses or address blocks.
Minimize the number of matching criteria, particularly for security zones, network objects, and port objects. When you specify multiple criteria, the system must match against each combination of the specified criteria.