The default action command configures the default action for the SSL-encrypted traffic detection policy.
| Parameter | Description | Value |
|---|---|---|
| deny | Indicates the deny action. | - |
| no-decrypt | Indicates the no-decrypt action. | - |
By default, the action for the SSL-encrypted traffic detection policy is no-decrypt.
If the action is set to deny, the device directly discards SSL-encrypted traffic that matches the policy. If the action is set to no-decrypt, the device directly allows SSL-encrypted traffic that matches the policy to pass through.