Enabling TLS decryption for the Forcepoint NGFW engine
If the Forcepoint NGFW user response will redirect HTTPS websites to Forcepoint RBI, then enable TLS decryption.
Steps
- Open the Forcepoint NGFW engine properties in the management UI.
- Browse to Add-Ons/TLS Inspection in the tree view.
- Create or import a suitable CA certificate for TLS decryption. Add the certificate in the Client Protection Certificate Authority field.
- Save the engine properties.
- Import the selected CA certificate to your endpoints as a trusted CA.