Virtual Secure Web Gateway

 View Only
  • 1.  SWG with internal domain blocked

    Posted May 25, 2011 05:56 PM

    First, let me describe the scenario : ( Using a different domain name.  Example.com )

    Our internal servers has FQDN names as :  intranet.example.com ; sql1.example.com ; symantec.example.com ; proxy.example.com.......etc

    Several web applications and web browsers use default home pages to : intranet.example.com and, inside this intranet site,  there are a lot of links to other internal services using names for internal servers with the following sintax :  apps.example.com

    NOTE:  ALL servers are internal..... None of them is outside the local network.

    Now, the SWG is configured and blocking access to denied categories as pornography, weapons, shopping.. etc.

    All was working OK for many weeks...until now !!!

    Our external web site,  http://www.example.com  was categorized by IBM Deutschland Research & Development GmbH  or in other words, the name for our internal domain was added to the Symantec Web Gateway Web Filter database in several categories.

    The resulting scenario is that users, servers or internal applications are being blocked because our internal domain is categorized into one of the blocked category.

    We are trying to remove, from the database, the name of our domain but has not been possible.
     
    Is there any way to register in the database ONLY the web site http://www.example.com and not the domain name  http://example.com ??
     
    In the SWG, we are trying to Whitelisting some internal names as intranet.example.com and is working, but we have problems with others like :  proxy.example.com ( The proxy for all clients ) and all the traffic from clients to internet, using the proxy server is being whitelisted, not reported, and allowed.
     
    Whitelisting the internal subnet or IP addresses is allowing all traffic.
     
    We understand that the internal domain should be different of the external web site...  but this will be another long proyect.
     
    Any help will be appreciated.


  • 2.  RE: SWG with internal domain blocked

    Posted May 26, 2011 09:42 AM

    Have the internal subnet(s) been defined in the networking section of the SWG?

    This can be found in Administration -> Configuration -> Network -> Internal Network configuration.

    You will want to be sure all internal subnets are listed here.