FEATURES &
 BENEFITS

DECRYPT ACROSS PORTS AND PROTOCOLS

DECRYPT ACROSS PORTS AND PROTOCOLS

Decrypt traffic across all standard TCP ports and advanced protocols like SSH, STARTTLS, XMPP, SMTP and POP3.
FULL-PROXY ARCHITECTURE

FULL-PROXY ARCHITECTURE

As a full proxy, ciphers can be re-negotiated to ciphers of similar strength to prepare for future ciphers or TLS versions.
ICAP-COMPATIBLE

ICAP-COMPATIBLE

Acting as an ICAP client, Thunder SSLi passes traffic to a network’s existing DLP systems without the need for extra solutions.
FIPS 140-2 LEVEL 3 COMPLIANCE

FIPS 140-2 LEVEL 3 COMPLIANCE

The only SSL decryption solution that supports up to four internal HSMs, and multiple external HSMs, to secure private keys.
URL BYPASSING

URL BYPASSING

Selectively bypass traffic decryption to enforce privacy policies using a list of over 460 million domains.
URL Filtering

URL Filtering

Categorizes over 460 million domains to maximize employee productivity and security by blocking malicious websites as well as to selectively bypass decryption for compliance.
LOAD BALANCING AND STEERING

LOAD BALANCING AND STEERING

Increase security capacity by load-balancing multiple security devices and selective traffic steering based on fine-grained policies.
APPCENTRIC TEMPLATES

APPCENTRIC TEMPLATES

Reduce deployment times, and simplify configuration, management and troubleshooting with the AppCentric Templates.

DEPLOYMENT SCENARIOS

HTML/CSS 

Thunder SSLi can decrypt traffic for a variety of security products simultaneously, including inline, non-inline (passive/TAP) and ICAP-enabled devices.

HTML/CSS 

Thunder SSLi decrypts traffic for variety security devices from the top vendors.

Deployment options
Validated solutions
Customers are demanding a purpose-built standalone solution to address the SSL blind spot without degrading the performance of the security infrastructure.”