<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Umbrella proxying in Cloud Security</title>
    <link>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4386140#M1107</link>
    <description>&lt;P&gt;The &lt;A href="http://www.ciscoprep.com/p/350-601-implementing-and-operating.html" target="_blank" rel="noopener"&gt;intelligent proxy&lt;/A&gt; is the ability for Umbrella to intercept and proxy requests for malicious files embedded within certain so-called "grey" domains. Some websites, especially those with large user communities or the ability to upload and share files, have content that most users want to access while also posing a risk because of the possibility of hosting malware. Administrators don't want to block access to the whole "grey" domain for everyone but they also don't want your users to access files that could harm their computers or compromise company data.&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.umbrella.com/deployment-umbrella/docs/what-is-the-intelligent-proxy" target="_blank" rel="noopener"&gt;https://docs.umbrella.com/deployment-umbrella/docs/what-is-the-intelligent-proxy&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 13 Apr 2021 12:25:21 GMT</pubDate>
    <dc:creator>ameliascotts80938</dc:creator>
    <dc:date>2021-04-13T12:25:21Z</dc:date>
    <item>
      <title>Umbrella proxying</title>
      <link>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292324#M1075</link>
      <description>&lt;P&gt;Hello ,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have an ASA cluster in AWS .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have the roaming client on all my any connect users.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am seeing a strange behaviour . Wheneevrr users are connected to any connect , umbrella is proxing many websites which it is not when users are not on anyconnect.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Like gitlab etc .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is it normal or how to make both work same&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 16 Feb 2021 11:37:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292324#M1075</guid>
      <dc:creator>skywalker_007</dc:creator>
      <dc:date>2021-02-16T11:37:56Z</dc:date>
    </item>
    <item>
      <title>Re: Umbrella proxying</title>
      <link>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292328#M1076</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1146484"&gt;@skywalker_007&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do you have a different policy rule for "Roaming Computers" compared to when they are not connected? If there are different policies with different rules that could explain it. Which license do you have?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 16 Feb 2021 11:49:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292328#M1076</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-02-16T11:49:49Z</dc:date>
    </item>
    <item>
      <title>Re: Umbrella proxying</title>
      <link>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292330#M1077</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp; we have dns advantage.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You mean different&amp;nbsp; security rule in umbrella or ASAv ?&lt;/P&gt;</description>
      <pubDate>Tue, 16 Feb 2021 11:54:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292330#M1077</guid>
      <dc:creator>skywalker_007</dc:creator>
      <dc:date>2021-02-16T11:54:26Z</dc:date>
    </item>
    <item>
      <title>Re: Umbrella proxying</title>
      <link>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292332#M1078</link>
      <description>&lt;P&gt;Yes, Umbrella policy.&lt;/P&gt;</description>
      <pubDate>Tue, 16 Feb 2021 11:59:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292332#M1078</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-02-16T11:59:24Z</dc:date>
    </item>
    <item>
      <title>Re: Umbrella proxying</title>
      <link>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292539#M1079</link>
      <description>&lt;P&gt;Hi Rob,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is no difference except we block some extra categories like gamble , lottery etc.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Does this make difference ?&lt;/P&gt;</description>
      <pubDate>Tue, 16 Feb 2021 16:31:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292539#M1079</guid>
      <dc:creator>skywalker_007</dc:creator>
      <dc:date>2021-02-16T16:31:55Z</dc:date>
    </item>
    <item>
      <title>Re: Umbrella proxying</title>
      <link>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292901#M1081</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/97036"&gt;@Rob Ingram&lt;/a&gt;&amp;nbsp;Not able to figure out why there is a difference&lt;/P&gt;</description>
      <pubDate>Wed, 17 Feb 2021 08:40:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4292901#M1081</guid>
      <dc:creator>skywalker_007</dc:creator>
      <dc:date>2021-02-17T08:40:03Z</dc:date>
    </item>
    <item>
      <title>Re: Umbrella proxying</title>
      <link>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4293150#M1084</link>
      <description>&lt;P&gt;Anyone ? We have two policies - one is vpn and other is default .&lt;/P&gt;&lt;P&gt;In vpn policy , we are blocking more like gambling etc .&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But some websites are being proxies while connected to vpn but not when not connected.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is a strange behaviour . Don't think so related to policy.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could be because of intelligent proxy or certificate ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Or chaining ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When connected to ASAv , the request goes to asa in AWS cloud .but we have already added the public IP of asa as known ip in umbrella.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The issue is proxying&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 17 Feb 2021 16:01:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4293150#M1084</guid>
      <dc:creator>skywalker_007</dc:creator>
      <dc:date>2021-02-17T16:01:59Z</dc:date>
    </item>
    <item>
      <title>Re: Umbrella proxying</title>
      <link>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4293181#M1085</link>
      <description>&lt;P&gt;as we are using full tunnel , can we enable the below option on umbrella&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Disable umbrella module on Anyconnect full tunnel vpn&lt;/P&gt;</description>
      <pubDate>Wed, 17 Feb 2021 17:01:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4293181#M1085</guid>
      <dc:creator>skywalker_007</dc:creator>
      <dc:date>2021-02-17T17:01:59Z</dc:date>
    </item>
    <item>
      <title>Re: Umbrella proxying</title>
      <link>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4386140#M1107</link>
      <description>&lt;P&gt;The &lt;A href="http://www.ciscoprep.com/p/350-601-implementing-and-operating.html" target="_blank" rel="noopener"&gt;intelligent proxy&lt;/A&gt; is the ability for Umbrella to intercept and proxy requests for malicious files embedded within certain so-called "grey" domains. Some websites, especially those with large user communities or the ability to upload and share files, have content that most users want to access while also posing a risk because of the possibility of hosting malware. Administrators don't want to block access to the whole "grey" domain for everyone but they also don't want your users to access files that could harm their computers or compromise company data.&lt;/P&gt;&lt;P&gt;&lt;A href="https://docs.umbrella.com/deployment-umbrella/docs/what-is-the-intelligent-proxy" target="_blank" rel="noopener"&gt;https://docs.umbrella.com/deployment-umbrella/docs/what-is-the-intelligent-proxy&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 13 Apr 2021 12:25:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cloud-security/umbrella-proxying/m-p/4386140#M1107</guid>
      <dc:creator>ameliascotts80938</dc:creator>
      <dc:date>2021-04-13T12:25:21Z</dc:date>
    </item>
  </channel>
</rss>

