Cisco Cisco Content Security Management Appliance M680 ユーザーガイド
9-12
AsyncOS 9.5.x for Cisco Content Security Management Appliances User Guide
Chapter 9 Managing Web Security Appliances
Setting Up Configuration Masters to Centrally Manage Web Security Appliances
Note
Web Proxy is not listed as a feature, because it is assumed that the Web Proxy is enabled in order
to execute any of the managed policy types on the Web Security appliances. If the Web Proxy is
disabled, any policies published to the Web Security appliances will be ignored.
to execute any of the managed policy types on the Web Security appliances. If the Web Proxy is
disabled, any policies published to the Web Security appliances will be ignored.
Step 3
(Optional) Hide Configuration Masters that you will not use. For instructions and cautions, see
.
Step 4
For each Configuration Master that you will use, select or uncheck the Yes check box for each feature
to enable.
to enable.
Special notes for certain features (available options vary by Configuration Master version):
•
Transparent Mode. If you use Forward mode, the proxy bypass feature will not be available.
•
HTTPS Proxy. HTTPS proxy must be enabled in order to configure decryption policies.
•
Upstream Proxy Groups. Upstream proxy groups must be available on your Web Security appliances
if you want to use routing policies.
if you want to use routing policies.
Step 5
Click Submit. The GUI displays specific warning messages if the changes you made to the security
services settings will affect policies configured on your Web Security appliances. If you are sure that
you want to submit your changes, click Continue.
services settings will affect policies configured on your Web Security appliances. If you are sure that
you want to submit your changes, click Continue.
Step 6
On the Security Services Display page, confirm that Yes appears alongside each option that you
selected.
selected.
Step 7
Commit your changes.
What To Do Next
•
Verify that all features are now correctly enabled or disabled for the appliance to which you will
publish. See
publish. See
•
On each Web Security appliance to which you will publish, make sure the features are enabled
consistently with the features you have enabled for the Configuration Master.
consistently with the features you have enabled for the Configuration Master.
Disabling Unused Configuration Masters
You can choose not to display unused Configuration Masters.
However, at least one Configuration Master must be enabled.
Note
When a Configuration Master is disabled, all references to it are removed from the GUI including the
corresponding Configuration Master tab. Pending publish jobs that use the Configuration Master are
deleted, and all Web Security appliances assigned to the hidden Configuration Master are re-categorized
as not assigned.
corresponding Configuration Master tab. Pending publish jobs that use the Configuration Master are
deleted, and all Web Security appliances assigned to the hidden Configuration Master are re-categorized
as not assigned.
Procedure
Step 1
On the Security Management appliance, choose Web > Utilities > Security Services Display.
Step 2
Click Edit Settings.
Step 3
Uncheck the checkbox(es) for unused Configuration Masters.