No video

Cisco Firepower: FMC SSL Decrypt with MS Signed CA

  Рет қаралды 3,944

Jason Maynard

Jason Maynard

Күн бұрын

In this video we will setup Firepower TLS decryption capabilities to ensure we are inspecting all traffic and not missing threats embedded in TLS. We will leverage a MS CA to sign the CSR from Firepower to enable Firepower to issuing Certificates. This also helps with browser errors when using self signed - in most environments the internal ROOT CA is distributed using GPO so all assets trust certificates issued by this CA. We will finish off with some testing and validation.

Пікірлер: 6
@Smartanification
@Smartanification Жыл бұрын
Thank you really informative and to the point, loved it
@jasonmaynard8773
@jasonmaynard8773 Жыл бұрын
Glad it was helpful!
@dusanmirkovic6457
@dusanmirkovic6457 3 жыл бұрын
How, on earth, did you change FMC to dark theme? Pleeeeseeee share this :)
@jasonmaynard8773
@jasonmaynard8773 3 жыл бұрын
I beleive it started in version 6.7 but check out 7.x. As always with any release review the release notes and test. Have fun!
@dusanmirkovic6457
@dusanmirkovic6457 3 жыл бұрын
One more thing... I have two tier PKI , meaning, I have root ca (srv1), Subordinate root ca (srv2) who is doing issuing certs to everybody. So where do I go for SUB CA for FMC? Do I go to root ca (srv1) and ask this server to di the issuing SUB CA for FMC or I go to (srv2) for issuing? Thank you ! Btw, great clip ;)
@jasonmaynard8773
@jasonmaynard8773 3 жыл бұрын
Thanks for the feedback! You need to use an authority that supports granting issuing CA's for subnorates.
21. Cisco Firepower Threat Defense 6 2 2: SSL/TLS Decrypt
51:25
Jason Maynard
Рет қаралды 14 М.
这是王子儿子吗
00:27
落魄的王子
Рет қаралды 20 МЛН
Inside Out 2: Who is the strongest? Joy vs Envy vs Anger #shorts #animation
00:22
Ouch.. 🤕
00:30
Celine & Michiel
Рет қаралды 27 МЛН
Stop, Intel’s Already Dead!
13:47
Linus Tech Tips
Рет қаралды 654 М.
13. Cisco FTD SSL Decryption
17:56
RAYKA
Рет қаралды 4,5 М.
Cons of a Network Engineer: What I Wish I Knew Earlier!
10:22
The Social Dork
Рет қаралды 41 М.
14. Cisco Firepower SSL Decryption: Decrypt Known Key
16:23
Digital Certificates: Chain of Trust
16:41
Dave Crabbe
Рет қаралды 287 М.
AnyConnect Remote Access VPN on FTD with FMC
46:25
Netintro
Рет қаралды 11 М.
Red Team Reconnaissance Techniques
1:27:09
HackerSploit
Рет қаралды 120 М.
这是王子儿子吗
00:27
落魄的王子
Рет қаралды 20 МЛН