Symantec Web Gateway NTLM authentication support
Created: 06 Aug 2012 | 11 comments
Hi there:
During Symantec Web Gateway configuration I enable http/https, ftp proxy, socks proxy and SSL intersection.
Most of my client’s machines are window 7 (as per different articles window 7 by default support NTLMv2). Kindly guide me that I need to change Window LAN security setting for NTLMv1 support?
Note: As it is not recommended because NTLMv1 is not secure protocol for authentication.
Best regards
Ishaq
Discussion Filed Under:
Comments 11 Comments • Jump to latest comment
Hi Ishaq,
Are you running Proxy + Inline or just Proxy mode?
Federico
Dear Federico,
We are running proxy mode with http/https, SSL and FTP proxy.
I check my client machine and found that there is LAN security setting is define "not define" while on DC this setting is set as "NTLMv2 Response only\refuse LM. Is it ok for SSL intersepection or we need to change it.
Best regards
Ishaq
Best Regards,  
Hi Ishaq,
Could you please try this and let me know the outcome?
To configure NTLM compatibility for Windows Vista and Windows 7
Thanks!
Federico
Dear Federico,
reference to SWG implementation guide page 81 'You can configure each individual computer on the
Best Regards,  
Dear Federico,
My requirement is that my client use both https and SSL deep inspection proxy.
Kindly reply back as soon as possible because it is urgent :)
Best regards
Ishaq
Best Regards,  
Hi,
So, this is a different topic. The steps to configure that are detailed into the SWG Implementation Guide 5.0, page 83 under Configuring the Symantec Web Gateway proxy for SSL Deep Inspection.
The steps you need to complete are:
Please check the SWG Implementation Guide and make sure you verify these settings via Custom Reports.
HTH,
Federico
Dear Federico,
Do you have any idea that how we configure SSL proxy at end users ????
secondaly if we only configure http/https proxy port in user browser that can swg monitor https traffic or not????
Best regards
Ishaq
Best Regards,  
Hi Ishaq,
my previous comments include that. Client machines must use the SSL deep inspection port on the browser (default 8443) and, the certificate that SWG will use to do that must be imported into the client machines to be trusted.
If your concern is regarding the visibility of HTTPS traffic, if you only use the HTTP/S proxy instead, (i.e TCP ports 8080-8083) you will be able to monitor that traffic. Please check the documentation for the features that rely on SSL deep inspection.
Federico
Dear Federico,
Thanks for your time and support! I still have some confussion:
- how I enable http/s & SSL proxy on endpoint.
- for SLP integration is I need SSL or not (if not then can my SLP solution can monitor HTTPS traffic or not).
Best regards
Ishaq
Best Regards,  
Hi Ishaq,
on the client machines, just configure the browsers:
Check
Symantec Web Gateway (SWG) - Best Practices: Proxy Mode
http://www.symantec.com/docs/TECH192087
Regards,
Federico
Hi everybody,
How to define SSL proxy in PAC for Symantec Web Gateway
Regards
Ishaq
Best Regards,  
Would you like to reply?
Login or Register to post your comment.