Cisco Cisco Web Security Appliance S360 User Guide

Page of 478
4-18
AsyncOS 9.0.1 for Cisco Web Security Appliances User Guide
 
Chapter 4      Intercepting Web Requests
  Troubleshooting Intercepting Requests
Step 4
(Optional) Add a description.
Step 5
In the Insert Above Policy field, choose where in the SOCKS policies table to insert this SOCKS policy.
Note
When configuring multiple SOCKS policies, determine a logical order for each policy. Order 
your policies to ensure that correct matching occurs.
Step 6
In the Identities and Users section, choose one or more Identities to apply to this policy group. 
Step 7
(Optional) Expand the Advanced section to define additional membership requirements.
Step 8
Submit and Commit Changes.
What to Do Next 
(Optional) Add an Identity for use with SOCKS Policies.
Add one or more SOCKS Policies to manage SOCKS traffic.
Troubleshooting Intercepting Requests
Advanced Option
Description
Proxy Ports
The port configured in the browser.
(Optional) Define policy group membership by the proxy port used to access the 
Web Proxy. Enter one or more port numbers in the Proxy Ports field. Separate 
multiple ports with commas.
You might want to define policy group membership on the proxy port if you have 
one set of clients configured to explicitly forward requests on one port, and another 
set of clients configured to explicitly forward requests on a different port. 
Note
If the Identity associated with this policy group defines Identity 
membership by this advanced setting, the setting is not configurable at the 
SOCKS policy group level.
Subnets
(Optional) Define policy group membership by subnet or other addresses.
You can choose to use the addresses that may be defined with the associated 
Identity, or you can enter specific addresses here. 
Note
If the Identity associated with this policy group defines its membership by 
addresses, then in this policy group you must enter addresses that are a 
subset of the Identity’s addresses. Adding addresses in the policy group 
further narrows down the list of transactions that match this policy group.
Time Range
(Optional) Define policy group membership by time range:
1.
Select a time range from the Time Range field.
2.
Specify whether this policy group should apply to the times inside or outside 
the selected time range.