Upload an internal CA for outbound protection
Upload an internal certificate authority to create a decryption rule that protects outbound connections.
This task discusses how you can optionally upload an internal certificate authority when you create a decryption rule that protects outbound connections. You can also perform these tasks using as discussed in Upload a signed certificate issued in response to a CSR.
Before you begin
Make sure you understand the requirements for generating an internal certificate authority object as discussed in Internal certificate authority objects.
Follow these steps to upload an internal CA for outbound protection:
Procedure
Step 1 | From the Internal CA list, click . |
Step 2 | Give the internal CA a Name. |
Step 3 | Paste or browse to locate the certificate and its private key in the provided fields. |
Step 4 | If the CA has a password, select the Encrypted check box and enter the password in the adjacent field. |
Step 5 | Continue creating the policy as discussed in Create a rule-based decryption policy with outbound connection protection. |