Cisco Cisco Web Security Appliance S170 사용자 가이드

다운로드
페이지 734
 
7-10
Cisco IronPort AsyncOS 7.5.7 for Web User Guide
Chapter 7      Cloud Web Security Connector
Preventing Loss of Secure Data
Transparent HTTPS
In the case of transparent HTTPS, AsyncOS does not have access to information in the client headers. 
Therefore, AsyncOS cannot enforce routing policies that rely on information in client headers. For 
example, for transparent HTTPS transactions, AsyncOS does not have access to the username in the 
HTTPS client header and therefore it cannot match a routing policy based on username. In this case, 
AsyncOS uses the default routing policy.
Explicit HTTPS
In the case of explicit HTTPS, AsyncOS has access to the following information in client headers:
  •
URL
  •
Destination port number
Therefore, for explicit HTTPS transactions, it is possible to match a routing policy based on URL or port 
number. 
Preventing Loss of Secure Data
You can integrate the Cloud Connector with external Data Loss Prevention servers through 
Network>External DLP Servers
Related topics
  •
Cloud Connector Logs
The Cloud Connector Logs provides useful information for troubleshooting problems with the Cloud 
Connector, for example, authenticated users and groups, the Cloud header, and the authorization key. 
Subscribing to the Cloud Connector Logs
Step 1
Navigate to System Administration>Log Subscriptions.
Step 2
Select Cloud Connector Logs from the Log Type menu.
Step 3
Type a name in the Log Name field.
Step 4
Set the log level.
Step 5
Submit and Commit your changes.
Related topics
  •
Tip
Go to whoami.scansafe.net to view the configured group names, user names, and IP addresses.