Short Name |
SSL:AUDIT:NOT-SSL |
---|---|
Severity |
Info |
Recommended |
No |
Category |
SSL |
Keywords |
NOT SSL Tunneling P2P Skype VOIP Peer-to-Peer proxy |
Release Date |
2009/12/18 |
Update Number |
1569 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects TCP sessions that are not SSL, but are using the default SSL port of 443. This can be an indicator that a non-SSL program (such as Peer-to-Peer file sharing, proxy servers, or Voice over IP) is attempting to circumvent security and tunnel through the firewall.