Back to Projects
Business Systems House 2025

Multi-Tenant Web Proxy Certificate Decryption & SSL Inspection

Multi-Tenant Web Proxy Certificate Decryption & SSL Inspection
FortiGate SSL Inspection ADCS Root CA Group Policy (GPO) Certificate Trust Stores

Multi-Tenant Web Proxy Certificate Decryption & SSL Inspection

Implemented full SSL deep packet inspection across perimeter firewalls to uncover encrypted malware payloads and hidden data exfiltration channels.

Key Features & Implementation

  • Subordinate CA Deployment: Generated dedicated firewall intermediate CA certificates for dynamic SSL re-signing.
  • GPO Root Certificate Distribution: Automated pushing internal CA root certificates to client Windows, Mac, and browser trust stores via GPO.
  • Bypass Category Exceptions: Configured explicit SSL inspection bypass rules for sensitive banking and healthcare web domains.
ROOT ACCESS GRANTED