Configuring encrypted connections scan in the Administration Console

In the Administration Console, you can configure settings for encrypted connections scans in the policy properties (General settingsNetwork settings).

Encrypted connections scan settings

Setting

Description

Enable encrypted connections scan

This check box enables or disables the encrypted connections scan.

The check box is selected by default.

Visiting a domain with an untrusted certificate

In the drop-down list, you can select the action that the application performs when a domain with an untrusted certificate is visited:

  • Allow (default value) — Allow connecting to the domain with an untrusted certificate.
  • Block — Block connection to the domain with an untrusted certificate.

Visiting a domain with an encrypted connections scan error

In the drop-down list, you can select the action that the application performs when a domain with an encrypted connections scan error is visited:

  • Allow and add domain to exclusions (default value) — Add the domain that resulted in the error to the list of domains with scan errors and do not scan encrypted network traffic when this domain is visited.
  • Block — Block connection to the domain with a scan error.

Certificate verification policy

In the drop-down list, you can select how the application verifies certificates:

  • Local check: the application does not use the internet to validate a certificate.
  • Full check (default value): the application uses the Internet to check and download the missing chains that are required to validate a certificate.

Trusted domains

This group of settings contains the Configure button, which opens the Trusted domains window, where you can configure the list of trusted domain names.

Trusted root certificates

This group of settings contains the Configure button, which opens the Trusted root certificates window, where you can configure the list of trusted root certificates. Trusted certificates are used when performing an encrypted connections scan.

Network ports settings

This group of settings contains the Configure button. Clicking this button opens the Monitored ports window.

Page top