Mumbai Security and Compliance User Group

 View Only

Squid Proxy SSIM Agent Installation (steps at linux machine) 

Feb 09, 2012 10:49 AM

Squid Proxy SSIM Agent Installation Procedure

 

Pre-requiste:

  1. Squid Proxy SSIM Collector (symevtagent_4.5.0.12.tar)
  2. Squid Proxy SSIM Agent (squid_4.3.3.zip)

Steps:

  1. Download SSIM Agent and Collector for Squid Proxy.
  2. Upload or transfer both the files to the Squid Proxy Server via ftp or WINScp.
  3. Add the SSIM host names entry to /etc/hosts file using vi editor and save the file.
  4. Then extract the SSIM Agent on Proxy Server.
  5. Command : tar -xvf symevtagent_4.5.0.12.tar
  6. After extraction of the folder, change the folder to Agent and run ./install.sh to install SSIM Agent.
  7. After successful installation of the SSIM agent, unzip the SSIM Collector
  8. Command : unzip squid_4.3.3.zip
  9. After extraction of the folder, run ./install.sh to install the SSIM collector.
  10. After successful installation of the collector, verify the agent status.
  11. Change the location to /opt/Symantec/sesa/, then run ./agentmgmt.sh and check the agent status.
  12. Now edit the squid.conf file
  13. Navigate to /etc/squid and use vi editor to edit squid.conf
  14. Uncomment the line  (emulate_httpd_log off)
  15. Then change the value from OFF to ON
  16. Save and close the squid.conf file.
  17. Now initialize the cache so that it refreshes its settings
  18. Command : squid -z

Statistics
0 Favorited
0 Views
0 Files
0 Shares
0 Downloads

Tags and Keywords

Comments

Feb 16, 2012 01:15 AM

Thumps up!!!

Feb 15, 2012 06:46 AM

@ SSIM,

Just need to configure the sensor at System Tab -> Product Configurations -> Squid Web Proxy Event Collector -> Syslog file sensor

After that add the proxy server by right clicking the sensor file -> Properties -> Computer -> Search and ADD the proxy name.

Enable the sensor and check for the logs.

Refer screenshot for better undrstanding.

Thanks.

 

 

 

 

 

 

 

 

Feb 14, 2012 09:14 PM

Thums UP!!

Feb 14, 2012 08:55 PM

What are the changes required at SSIM end...

Related Entries and Links

No Related Resource entered.