Inspect unencrypted HTTP/2 traffic with cleartext HTTP/2 inspection. The firewall identifies HTTP/2 connections early, manages them as single TCP connections, and tracks each HTTP/2 stream independently. The system performs Layer 7 inspection and enforces policies on each stream, providing granular visibility and control over individual transactions within the same connection.
To configure cleartext inspection for HTTP/2, use the CLI commands: set security application-services http2 plain-text and set services ssl proxy global config http2 on. Verify your configuration with show security application-services status and show security application-services monitoring.
| Product / Application | Software | Introduced Release |
|---|---|---|
| vSRX | Junos OS | 26.2R1 |
| cSRX | Junos OS | 26.2R1 |
| SRX1500 | Junos OS | 26.2R1 |
| SRX2300 | Junos OS | 26.2R1 |
| SRX4100 | Junos OS | 26.2R1 |
| SRX4120 | Junos OS | 26.2R1 |
| SRX4200 | Junos OS | 26.2R1 |
| SRX4300 | Junos OS | 26.2R1 |