Jump to content

Recommended Posts

Posted

I need to allow our Cambium Access Point to communicate with cloud.cambiumnetworks.com. I need to add this URL to be excluded from HTTP inspection as the APs won't have the certificate on.

 

Do I just add the URL to the Exception URLs category? Currently there is nothing in the category as this is a new install.

Posted
Yes that’s right. Or add it into a new custom category and create a new https inspection policy to not filter your customer category.
  • Thanks 2
Posted (edited)

For things like ap and what we done for interactive tvs is option 3 however I would either

- if your on a flat network then yes you could do it that way.

- alternative create a location with all the ip addressses of the aps and create a https inspection rule for the location created set not do not inspect. This way you can tie down the filtering on the location also to only access certain sites related to the ap (interactive tv etc)

- another option is to Vlan the ap on to their own ip range. You can create a location that includes that range then create an inspection rule do not inspect and I filtering rule

Edited by dapaulio
Posted
Bear in mind that you will only be able to do this by domain (as until we mitm we don't have any URL data)

 

If I add a URL in the list though, will it take the domain from that? Or should I just enter the domain

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...