Offloading Decryption

Decrypt once. Analyze as needed.

Don’t let decryption disrupt security.

Most traffic, and many threats arrive encrypted but most security tools were built to process clear text. Leaving it to your security tools to decrypt traffic wastes time and compute power—and theoretically adds risk—as multiple tools perform the same decryption function on the same traffic over and over.

Offload decryption to a visibility layer to streamline security workflows and reduce cost.

Improve tool utilization up to 75%.

Decryption usurps up to 60-80% of a tool’s capacity, leaving just 20-40% to spend inspecting traffic. Offload decryption to a visibility platform to improve utilization and ROI on firewalls and other tools by up to 75%–without paying to invest in dedicated decryption devices. Once you decrypt traffic, it can be inspected by multiple specialized tools as needed.  


Offloading TLS/SSL decryption to a packet broker lets the visibility layer forward cleartext traffic to multiple security monitoring solutions simultaneously. Security appliances can devote all processing cycles to their core function – detecting and responding to threats. Keysight NPBs use advanced cryptography to perform active traffic decryption with zero packet loss.

Related Resources.