Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Announcement: Try the Ask AI chatbot for answers to your technical questions about Juniper products and solutions.

close
header-navigation
keyboard_arrow_up
close
keyboard_arrow_left
Junos CLI Reference
Table of Contents Expand all
list Table of Contents

whitelist

date_range 20-Nov-23

Syntax

content_copy zoom_out_map
whitelist [global-address-book-addresses];

Hierarchy Level

content_copy zoom_out_map
[edit services ssl proxy profile profile-name]
[edit services ssl termination profile profile-name]

Description

Specify the addresses exempted from the SSL proxy. This statement is supported on the SRX1500, SRX4100, SRX4200, SRX5400, SRX5600, and SRX5800 devices and vSRX Virtual Firewall.

You can selectively bypass SSL proxy processing for some sessions by configuring a allowlist. Typically, you might configure the allowlist to include trusted servers or domains with which you are very familiar. An allowlist include addresses that you want to exempt from undergoing SSL proxy processing.

To configure the allowlist, you need to specify the domain that you want to exempt in an address book and then configure the address in the SSL proxy profile.

Options

  • allowlist-address—Specify address from the global address book.

Required Privilege Level

services—To view this statement in the configuration.

services-control—To add this statement to the configuration.

Release Information

Statement introduced in Junos OS Release 12.1X44-D10.

footer-navigation