Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Netskope Exam NSK101 Topic 1 Question 35 Discussion

Actual exam question for Netskope's NSK101 exam
Question #: 35
Topic #: 1
[All NSK101 Questions]

How does a cloud security solution achieve visibility into TLS/SSL-protected Web traffic?

Show Suggested Answer Hide Answer
Suggested Answer: C

TLS/SSL Inspection:

Cloud security solutions achieve visibility into TLS/SSL-protected web traffic through a process known as TLS/SSL interception or inspection.

How It Works:

The security solution acts as an intermediary (man-in-the-middle) during the TLS handshake.

When a user initiates a connection to a TLS/SSL-protected website, the security solution intercepts this connection.

It completes the TLS handshake with the user's device using its own certificate, and simultaneously performs the handshake with the destination website.

Certificate Replacement:

The security solution decrypts the traffic, inspects it, and then re-encrypts it before forwarding it to the destination website.

The user's browser trusts the security solution's certificate, which replaces the original website's certificate.

Security Implications:

This method allows the security solution to inspect encrypted traffic for threats or policy violations while maintaining secure communication.

Reference:

Detailed explanations and implementation steps can be found in Netskope documentation on SSL/TLS inspection.


Contribute your Thoughts:

Cyril
7 days ago
Wow, D is really out there! Using government-issued universal decryption keys? That's some serious Big Brother stuff right there.
upvoted 0 times
...
Larae
16 days ago
Option C seems like the right way to go. Performing the TLS handshake on behalf of the website and replacing the certificate is a common technique used by cloud security solutions.
upvoted 0 times
...
Aleta
20 days ago
I think the answer is C.
upvoted 0 times
...

Save Cancel