Cisco Cisco Web Security Appliance S360 Guia Do Utilizador

Página de 478
21-18
AsyncOS 9.0.1 for Cisco Web Security Appliances User Guide
 
Chapter 21      Monitor System Activity Through Logs
  Web Proxy Information in Access Log Files
BLOCK_CUSTOMCAT
Transaction blocked based on custom URL category filtering 
settings for the Access Policy group.
BLOCK_ICAP
The Web Proxy blocked the request based on the verdict of the 
external DLP system as defined in the External DLP Policy 
group.
BLOCK_SEARCH_UNSAFE
The client request included an unsafe search query and the 
Access Policy is configured to enforce safe searches, so the 
original client request was blocked.
BLOCK_SUSPECT_USER_AGENT
Transaction blocked based on the Suspect User Agent setting 
for the Access Policy group.
BLOCK_UNSUPPORTED_SEARCH_APP
Transaction blocked based on the safe search settings for the 
Access Policy group. The transaction was for an unsupported 
search engine, and the policy is configured to block 
unsupported search engines.
BLOCK_WBRS
Transaction blocked based on the Web Reputation filter settings 
for the Access Policy group.
BLOCK_WBRS_IDS
The Web Proxy blocked the upload request based on the Web 
Reputation filter settings for the Data Security Policy group.
BLOCK_WEBCAT
Transaction blocked based on URL category filtering settings 
for the Access Policy group.
BLOCK_WEBCAT_IDS
The Web Proxy blocked the upload request based on the URL 
category filtering settings for the Data Security Policy group.
DECRYPT_ADMIN
The Web Proxy decrypted the transaction based on some 
default settings for the Decryption Policy group.
DECRYPT_ADMIN_EXPIRED_CERT
The Web Proxy decrypted the transaction although the server 
certificate has expired. 
DECRYPT_WEBCAT
The Web Proxy decrypted the transaction based on URL 
category filtering settings for the Decryption Policy group.
DECRYPT_WBRS
The Web Proxy decrypted the transaction based on the Web 
Reputation filter settings for the Decryption Policy group.
DEFAULT_CASE
The Web Proxy allowed the client to access the server because 
none of the AsyncOS services, such as Web Reputation or 
anti-malware scanning, took any action on the transaction.
DROP_ADMIN
The Web Proxy dropped the transaction based on some default 
settings for the Decryption Policy group.
DROP_ADMIN_EXPIRED_CERT
The Web Proxy dropped the transaction because the server 
certificate has expired.
DROP_WEBCAT
The Web Proxy dropped the transaction based on URL category 
filtering settings for the Decryption Policy group.
DROP_WBRS
The Web Proxy dropped the transaction based on the Web 
Reputation filter settings for the Decryption Policy group.
MONITOR_ADMIN_EXPIRED_CERT
The Web Proxy monitored the server response because the 
server certificate has expired.
ACL Decision Tag
Description