This is the retired Shane Killen personal blog, an IT technical blog about configs and topics related to the Network and Security Engineer working with Cisco, Brocade, Check Point, and Palo Alto and Sonicwall. I hope this blog serves you well. -- May The Lord bless you and keep you. May He shine His face upon you, and bring you peace.
Most NGFWs have the ability to do SSL decryption, and its a really good idea to do so. Many attacks now come through encrypted packets, and they need to be inspected. If you have the capability to do SSL decryption, you should be doing this.