AnyDesk Application is being decrypted and discarded, although it is in SSL decryption exclude list

AnyDesk Application is being decrypted and discarded, although it is in SSL decryption exclude list

2867
Created On 03/04/22 09:51 AM - Last Modified 07/12/25 02:26 AM


Symptom


  • Adding "*.net.anydesktop.com" to the custom URL list and configuring the decryption policy with the action 'No Decrypt'.
  • The traffic for "*.net.anydesktop.com" is decrypted and discarded with the Session End Reason "decrypt-cert-validation".


Environment


  • Palo Alto Firewalls.
  • Supported PAN-OS.
  • SSL Decryption.
  • AnyDesk Application.


Cause


The server certificate is untrusted by the firewall and so SSL exclusion is ignored.
 


Resolution


  1. Import the CA cert on the firewall and and mark it trusted
  2. Now the exclusion will work fine.


Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000004NRdCAM&lang=en_US&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language