← Back to Projects
Business Systems House 2025
Multi-Tenant Web Proxy Certificate Decryption & SSL Inspection
FortiGate SSL Inspection ADCS Root CA Group Policy (GPO) Certificate Trust Stores
Multi-Tenant Web Proxy Certificate Decryption & SSL Inspection
Implemented full SSL deep packet inspection across perimeter firewalls to uncover encrypted malware payloads and hidden data exfiltration channels.
Key Features & Implementation
- Subordinate CA Deployment: Generated dedicated firewall intermediate CA certificates for dynamic SSL re-signing.
- GPO Root Certificate Distribution: Automated pushing internal CA root certificates to client Windows, Mac, and browser trust stores via GPO.
- Bypass Category Exceptions: Configured explicit SSL inspection bypass rules for sensitive banking and healthcare web domains.