The show ssl proxy exceptions command displays the rule exceptions created for proxy-based SSL configurations on the Sensor.
Syntax:
show ssl proxy exceptions
Sample output:
intruShell@vm600_ssl> show ssl proxy exceptions ----------|--------------------|-------------------------------------------------- | | Destination Rule num | Source Endpoint |--------------------|--------------|-------------- | | Endpoint | URL Hostname | URL Category ----------|--------------------|--------------------|--------------|-------------- 1 |any |any |any |Online Shopping ----------|--------------------|--------------------|--------------|-------------- 2 |any |any |any |Social Networking ----------|--------------------|--------------------|--------------|-------------- 3 |1.1.1.1/32 |any |any |any ----------|--------------------|--------------------|--------------|-------------- 4 |any |1.1.1.3/32 |any |any | |1.1.1.2/32 | | ----------|--------------------|--------------------|--------------|-------------- 5 |1.2.1.4-1.1.2.5 |any |any |any ----------|--------------------|--------------------|--------------|-------------- 6 |any |1.11.1.11-1.11.1.12 |any |any ----------|--------------------|--------------------|--------------|-------------- 7 |any |any |bank.com |any | | |www.bank.com| ----------|--------------------|--------------------|--------------|--------------
Applicable to:
NS9600 (standalone and stack), NS9500 (standalone), NS7600, NS7500, NS3600, VM600-SSL, VM600-VSS-SSL, and VM5000-SSL Sensors