Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Configure Pix 515 to verify Internet traffic with Proxy Server 2

Status
Not open for further replies.

Dfig

MIS
Feb 5, 2005
104
US
I need to configure my Pix 515E to verify outbound traffic with my Proxy Server which is a Webfiltering Appliance. The Appliance is connected to our Lan. I have it configured as a Proxy in my GPO which works fine if you are logged in the Domain. The problem is that the Proxy is bypassed if you log on locally. It was suggested in an earlier post in the 2003 Server Forum that I could configure my Firewall to verify outbound traffic with the Proxy. I am not too familiar with Pix so am looking for the commands to use or a resource I could use to figure it out.
 
Write an ACL on your pix to block outbound traffic destined for port 80
 
Does your web filter support the websense protocol? PIX only support N2H2s and Websense. Your other best bet would be to do what Brianms suggested and block outbound web traffic that is not equal to the proxy servers source IP.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top