Add trusted CA certificates

Add trusted CA certificates to your decryption policy to ensure proper handling of your organization's certificates during traffic decryption.

This task is optional but strongly recommended. Adding issuer CAs for your organization's certificates helps avoid issues with decrypting traffic in your decryption policy.

Before you begin

Complete the tasks discussed in:

Follow these steps to add trusted CA certificates:

Procedure


Step 1

In your policy, expand Advanced Options.

Step 2

In the Trusted CA certificates list, do any of the following:

  • Click the name of a trusted CA certificate from the list.

  • To remove all certificates from the list, click The image illustrates the process of selecting a trusted CA certificate from a list, highlighting the options available for managing the certificates in a decryption policy..

  • To return the list to its original values, click Add recommended.