• Integrated SSL Proxy with OpenSSL 1.1.1 for TLS 1.3 support-
• Worked on SSL-Proxy, OpenSSL-1.1.1 State-machine, TLS extensions and TLS record layer code components to make HTTPS-interception work for TLS 1.3 connections
• Developing policies and security features for SSL Proxy component on Proxy-SG security gateway, which does HTTPS Intercept, SSL Intercept and TCP tunneling
• Worked on the SSL-Proxy re-architecture to make it TLS 1.3 ready
Added support for new OpenSSL supported ciphers and functionalities available in the latest OpenSSL versions
• Patch fixes for the security vulnerabilities (CVE’s) found in OpenSSL code to the Proxy-SG version of the same
• Implemented new SSL access and SSL intercept layer policies to alter SSL intercept and tunneling
decisions
• Implemented and enhanced OpenSSL FIPS power-on-self-tests and algorithm vector tests, and have tested the Proxy-SG for FIPS and Common Criteria compliance in the presence of auditors
• Working on high priority customer issues in SSL Proxy and Certificate Management components