My question is PAN could not support cipher suite, TLS_RSA_WITH_AES_256_CBC_SHA? How do I bypass for the unsupported cipher suite for outbound SSL decryption? I tried to create a decryption profile that not to enable any block policy but it could not be bypassed and kakao-talk was not able to login. I could not find that any document for unsupported cipher suite for forward proxy (outbound SSL decryption). So I tried to capture the PCAPs for kakao-talk login function and they were using that TLS version 1.1 and Ciper Suite : TLS_RSA_WITH_AES_256_CBC_SHA (0x0035).
Korean messenger application called kakao-talk for PC is not being able to login during forward-proxy SSL decryption policy applied. It's working fine but some problem occurred. I have installed SSL decryption policy, which is forward proxy, for particular users.