
Filtering SSL traffic is always been a tricky work to do, SSL packets are encrypted thus making it impossible for standard HTTP filters to filter them. We have compiled a list of different SSL network traffic filters which will allow you to filter the SSL traffic at the gateway of your network and would not let SSL traffic rule your Network.
Secure Content Inspection Proxy (SCIP): This solution enables you to filter SSL traffic at the firewall and enabling you to block the traffic not related to your business or work. It also enables you to block access to encrypted proxy bypass sites as well. (http://sslfilter.com/)
Clear Tunnel:Clear Tunnel is a solution specifically made for Microsoft ISA Server, as ISA server has no native support for SSL traffic, this software exposes the SSL traffic to ISA server as normal HTTP traffic thus making it easier for ISA Server to filter that traffic. It also provides additional features for filtering HTTPS connections. (http://www.collectivesoftware.com/Products/ClearTunnel)
Webwasher: The main functionality of this solution is to prevent HTTPS communication for malware. It will also prevent users from bypassing traditional web content filters using popular CGI proxies. In addition to their SSL scanner, Webwasher offers several modules that can be chosen according to your needs including URL filtering, anti-malware, traditional anti-virus, anti-spam, SSL scanner, content reporter, and IM filtering. (http://www.securecomputing.com)
Cymphonix: This solution is also a robust solution for providing SSL filtering. It provides SSL content filtering support for Virus Scanning, Spywares, reverse DNS lookup, content analysis and file type filtering etc. This solution does not require you to install CA certification and no verification is required for CA certificate either. (http://www.cymphonix.com )
This article is open for further suggestions and recommendations from your side, we will also appreciate your valuable comments on this post.
