ProxySG & Advanced Secure Gateway

 View Only
Expand all | Collapse all

proxySG-Unexpected behaviour

  • 1.  proxySG-Unexpected behaviour

    Posted Aug 30, 2018 06:51 AM

    Hi Team,

     

    Customer has configured emplty whitelist policy (i am not sure why they configured), In That polcy none of the url is present(its emply).

    The rule like that,

    Any   Whitlist policy(empty)  any any allow.

    But when in check test the url category in the proxy its some of the urls are matching that empyt policy.

    When i disable this policy that url is not working. even in that policy trace also it matches in that policy only.

     

    Please advise.

     

    Thanks,

    Ram

     

     



  • 2.  RE: proxySG-Unexpected behaviour

    Posted Aug 30, 2018 06:59 AM

    Hi Team,

     

    Please fidn the below polcy trace:

     

    MATCH:         variable.bc_notify1(empty1) variable.bc_notify2(empty2) 
               <Proxy "handle HTML Notification internal requests">
               [Rule]  url=http://notify.bluecoat.com/ variable.bc_notify1=variable.bc_notify2
     
        miss :     url=http://notify.bluecoat.com/
               [Rule]  variable.bc_notify1=variable.bc_notify2 url=http://notify.bluecoat.com/ 
        miss :     variable.bc_notify1=variable.bc_notify2
               [Rule]  variable.bc_notify1=variable.bc_notify2 url=http://notify.bluecoat.com/ 
        miss :     variable.bc_notify1=variable.bc_notify2
               [Rule]  variable.bc_notify1=variable.bc_notify2 url=http://notify.bluecoat.com/ 
        miss :     variable.bc_notify1=variable.bc_notify2
               [Rule]  variable.bc_notify1=variable.bc_notify2 url=http://notify.bluecoat.com/ 
        miss :     variable.bc_notify1=variable.bc_notify2
               [Rule]  variable.bc_notify1=variable.bc_notify2 url=http://notify.bluecoat.com/ 
        miss :     variable.bc_notify1=variable.bc_notify2
               [Rule]
        miss :     url=http://notify.bluecoat.com/
        miss :     url=http://notify.bluecoat.com/
        miss :     url=http://notify.bluecoat.com/
        miss :     url=http://notify.bluecoat.com/
        miss :     url=http://notify.bluecoat.com/
        miss :     url=http://notify.bluecoat.com/
               [Rule]  variable.bc_notify1=variable.bc_notify2 
        miss :     variable.bc_notify1=variable.bc_notify2
               [Rule]
        MATCH:         action.__delete_notify_cookies(yes) 
               <Proxy>
        MATCH:         action.ControlRequestHeader1(yes) 
               <Proxy>
        miss :     url.domain=//capdownload.co.uk/
               <Proxy>
        miss :     url.domain=//myhrvwguk.myciphr247.com/
        miss :     url.domain=//pearson.com/
               <Proxy>
        miss :     url.port=8443
               <Proxy>
        miss :     url.domain=//dealerportal-qs.vw-group.com/
               <Proxy>
        miss :     url.domain=//stagingcs.vwg.co.uk/
               <Proxy>
        miss :     url.domain=//notify.bluecoat.com/
               <Proxy>
        miss :     url.domain=//jira.haynet.com/
               <Proxy>
        miss :     client.address=10.170.134.66
      Assigned values of transaction variables:
               bc_notify1=empty1
               bc_notify2=empty2
      connection: service.name=Explicit HTTP client.address=10.170.134.253 proxy.port=80
      time: 2018-08-30 09:26:06 UTC
      CONNECT tcp://tsa.webex.com:443/
        DNS lookup was unrestricted
    User-Agent: Mozilla/5.0 (Windows NT 6.2; WOW64; Trident/7.0; rv:11.0) like Gecko
      user: name="EMEA\dtx42bt" realm=EMEA
      authentication status='none' authorization status='none'
          url.category: Whitelist@Policy;Online Meetings@Blue Coat
          total categorization time: 0
          static categorization time: 0
      server.response.code: 0
      client.response.code: 200
      application.name: Cisco WebEx
      application.operation: none
      DSCP client outbound: 65
      DSCP server outbound: 65

     

     

    Thanks,

    Ram

     



  • 3.  RE: proxySG-Unexpected behaviour

    Posted Aug 30, 2018 07:09 AM

    Hi Ram,

     

                    This is weird enough to be interesting. Can you share sysinfo, policy trace showing this rule matching.



  • 4.  RE: proxySG-Unexpected behaviour

    Posted Aug 30, 2018 07:14 AM

    Hi Aravind,

    I have shared you the logs via PM.

    Thanks,

    Ram



  • 5.  RE: proxySG-Unexpected behaviour

    Posted Aug 30, 2018 07:39 AM

    Hi Ram,

     

                    The category Whitelist is not blank. It is having urls mentioned within it. The variables that you are noticing is for UPE and not have much effect on normal policy processing.



  • 6.  RE: proxySG-Unexpected behaviour

    Posted Aug 30, 2018 08:13 AM

    Hi Araind,

    Thank you for the finding. But we could see its empty, when we edit this policy.(nothing is there)

    Is there any comedic issue ?

     

    Thanks,

    Ram.



  • 7.  RE: proxySG-Unexpected behaviour

    Posted Aug 30, 2018 09:02 AM
    Hi Ram, Can you get a screenshot when it is showing empty?


  • 8.  RE: proxySG-Unexpected behaviour

    Posted Aug 30, 2018 09:02 AM
    Hi Ram, Can you get a screenshot when it is showing empty?


  • 9.  RE: proxySG-Unexpected behaviour

    Posted Aug 30, 2018 10:45 AM
      |   view attached

    Hi Aravind,

     

    Please find the attached screenshot.

    Thanks,

    Ram.

     



  • 10.  RE: proxySG-Unexpected behaviour

    Posted Aug 30, 2018 11:36 PM

    Hi Ram,

     

                    IMO it seems to be a Java issue. Can you try to clear the Java cache, browser cache and then load it to see whether it is listing.



  • 11.  RE: proxySG-Unexpected behaviour

    Posted Aug 31, 2018 07:05 AM

    Hi Aravind,

    Thank you for the udpate. We have tried but no luck.

    But we could see the other policy url details, but only this policy having the issue.

    Please advise.

     

    Thanks,

    Ram.



  • 12.  RE: proxySG-Unexpected behaviour

    Posted Aug 31, 2018 07:08 AM

    Hi Ram,

     

                    Sorry to say but I am not able to think of any other reasons for it to show blank. I don't remember seeing such an issue with other customers also. I will recommend a TAC case to check this out.



  • 13.  RE: proxySG-Unexpected behaviour

    Posted Sep 26, 2018 01:35 AM

    Hi Arvind/ Team,

    I have a below queries regarding proxy and UA. Please advise on this.

     

    1. This issue might be becuase of the JAVA issue. What is the recommented JAVA version for the proxy 6.5.X and 6.6.X , 6.7.X.

    2. We noticed unified agent doesn’t control Firefox browser. Even previously also proxy client also behave the same way, not able to control firefox

     

    Thanks,

    Ram.



  • 14.  RE: proxySG-Unexpected behaviour

    Posted Sep 26, 2018 03:14 AM

    Hi Ram,

                 Due to coding done on prevailing Java version, I don’t think a single Java version can cover the entire 6.5.x, 6.6.x and 6.7.x. While saying that I have managed to load all 3 with Java 7u121 sometime back. Java 8 will have the WebStart option which can be utilized for 6.6.2.x onwards.

                  About the Firefox issue, I have not heard it yet. Are you using 32bit UA and the FF is 64bit? Just a thought



  • 15.  RE: proxySG-Unexpected behaviour

    Posted Sep 26, 2018 04:56 AM

    Hi Aravind,

     

    Thank you for the update.

    I am requesting Recommented JAVA version for Each Sofware version.

    Please advise.

    For FireFox - i will check with customer and get back to you asap.

     

    Thanks,

    Ram.



  • 16.  RE: proxySG-Unexpected behaviour

    Posted Sep 26, 2018 05:09 AM

    Hi Ram,

     

                   For 6.5.x Java 7u121 should be fine. For 6.6.x and 6.7.x, you may use java 8. For respective SGOS, you can refer the release notes.



  • 17.  RE: proxySG-Unexpected behaviour

    Posted Sep 26, 2018 06:03 AM

    Hi Aravind/Team,

     

    Could you please provide download link for the JAVA verion 7U121. I couldnot find the download link. I was looking fo that link more than 30 mins.

     

    Thanks,

    Ram.



  • 18.  RE: proxySG-Unexpected behaviour

    Posted Sep 26, 2018 06:11 AM

    Hi Ram,

                     Sorry the version was Java 7u21. We don't have links for those downloads. On google search, got a hit in OLDApps. You can find it at an external link of http://www.oldapps.com/java.php?system=Windows_7 . Please download with caution.