Security Leaders Must Address Threats From Rising SSL Traffic


Archived Published: 09 December 2013 ID: G00258176

Analyst(s): |

Purchase this Document

Price: $195.00 USD (PAGES: 10)

To purchase this document, you will need to register or sign in above.

Summary

SSL encryption provides confidentiality for the encapsulated traffic but weakens enterprise defense-in-depth efficiency, exposing endpoints and DMZ servers to threats from outbound and inbound traffic. This research will help enterprise security leaders to create a traffic decryption strategy.

Table of Contents

  • Analysis
  • Impacts and Recommendations
    • An increasing share of enterprise network traffic is encrypted, creating gaps in defense-in-depth effectiveness that security leaders should not ignore
    • Complex sets of laws and regulations on privacy, along with a high risk of conflict with employees, kill most security leaders' outbound Web traffic decryption projects
      • Decrypting Traffic
      • Employee Surveillance
      • Data Retention
      • Prepare for Environment Changes
    • Security leaders face limited technology choices for enterprise network traffic decryption, and these solutions often induce high costs and poor user experience
      • Decrypting Traffic Has Multiple Effects on the Enterprise Network
      • Mitigation Techniques Exist but Are Not Yet Mature
  • Gartner Recommended Reading
© 2013 Gartner, Inc. and/or its Affiliates. All Rights Reserved. Reproduction and distribution of this publication in any form without prior written permission is forbidden. The information contained herein has been obtained from sources believed to be reliable. Gartner disclaims all warranties as to the accuracy, completeness or adequacy of such information. Although Gartners research may discuss legal issues related to the information technology business, Gartner does not provide legal advice or services and its research should not be construed or used as such. Gartner shall have no liability for errors, omissions or inadequacies in the information contained herein or for interpretations thereof. The opinions expressed herein are subject to change without notice.

Why Gartner

Gartner delivers the technology-related insight you need to make the right decisions, every day.

Find out more