<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi,It is not supported and i in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705607#M191892</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;It is not supported and i don't think there can be any workaround for this issue on the ASA device.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
    <pubDate>Wed, 06 May 2015 11:05:13 GMT</pubDate>
    <dc:creator>Vibhor Amrodia</dc:creator>
    <dc:date>2015-05-06T11:05:13Z</dc:date>
    <item>
      <title>WCCP "Whitelist" Redirect List Using FQDN?</title>
      <link>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705604#M191889</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;I've tried to make a redirect list to some traffic from ASA to Websense. This is part of the configuration:&lt;/P&gt;&lt;P&gt;......&lt;/P&gt;&lt;P&gt;wccp 0 redirect-list REDIRECT_WCCP group-list WEBSENSE&lt;BR /&gt;wccp 70 redirect-list REDIRECT_WCCP group-list WEBSENSE&lt;BR /&gt;wccp interface inside 0 redirect in&lt;/P&gt;&lt;P&gt;......&lt;/P&gt;&lt;P&gt;access-list REDIRECT_WCCP remark AB&lt;BR /&gt;access-list REDIRECT_WCCP extended deny ip host 10.xxx.xxx.xxx any&amp;nbsp;&lt;BR /&gt;access-list REDIRECT_WCCP remark VPN&lt;BR /&gt;access-list REDIRECT_WCCP extended deny ip any host 211.xxx.xxx.xxx&lt;BR /&gt;access-list REDIRECT_WCCP remark PI&lt;BR /&gt;access-list REDIRECT_WCCP extended deny ip any host 117.xxx.xxx.xxx&amp;nbsp;&lt;/P&gt;&lt;P&gt;access-list REDIRECT_WCCP extended permit ip object guest-wireless any&amp;nbsp;&lt;BR /&gt;access-list REDIRECT_WCCP extended permit ip 10.xxx.xxx.xxx&amp;nbsp;255.255.254.0 any&amp;nbsp;&lt;BR /&gt;access-list REDIRECT_WCCP extended permit ip 10.xxx.xxx.xxx&amp;nbsp;255.255.255.0 any&amp;nbsp;&lt;BR /&gt;access-list REDIRECT_WCCP extended permit ip 10.xxx.xxx.xxx&amp;nbsp;255.255.254.0 any&amp;nbsp;&lt;BR /&gt;access-list REDIRECT_WCCP extended permit ip 10.xxx.xxx.xxx&amp;nbsp;255.255.254.0 any&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;.......&lt;/P&gt;&lt;P&gt;and here is the rough topologi:&lt;/P&gt;&lt;P&gt;[Router]&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; |&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; |&lt;/P&gt;&lt;P&gt;[ASA]&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; |&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; |&lt;/P&gt;&lt;P&gt;[Distribution,Clients,etc]&amp;nbsp;---- [Websense]&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;From the configuration, it is working well with IP addresses. Note that the DENY means the packet is "Whitelisted" and will not be redirected by WCCP to Websense (WCCP will bypass certain traffic); otherwise&amp;nbsp;the PERMIT means the packet will be redirected to Websense.&lt;/P&gt;&lt;P&gt;Now the PROBLEM is that we need to make the "Whitelist" work with FQDN/domain name, since we are connected with domain that has dynamic IP addresses that changes everytime&amp;nbsp;and it willl be sometimes inaccurate hence time consuming too.&lt;/P&gt;&lt;P&gt;Is that any ALTERNATIVES or a simple solution for this?&lt;/P&gt;&lt;P&gt;Any kind of references or help will be much appreciated.&lt;/P&gt;&lt;P&gt;Sincerely thank you for the help.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Jack.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:53:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705604#M191889</guid>
      <dc:creator>jaksptr99</dc:creator>
      <dc:date>2019-03-12T05:53:30Z</dc:date>
    </item>
    <item>
      <title>Hi,You would not be able to</title>
      <link>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705605#M191890</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;You would not be able to use FQDN based ACL's with the WCCP redirect list.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Wed, 06 May 2015 03:54:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705605#M191890</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-05-06T03:54:16Z</dc:date>
    </item>
    <item>
      <title>Thank you for your response.</title>
      <link>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705606#M191891</link>
      <description>&lt;P&gt;Thank you for your response. Unfortunately we need FQDN to resolve some domains for Office 360 and Microsoft Lync.&lt;/P&gt;&lt;P&gt;Do you have any other suggestion? maybe like creating new rules or object,or maybe minor tweaking in architecture or something?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;Jack.&lt;/P&gt;</description>
      <pubDate>Wed, 06 May 2015 08:31:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705606#M191891</guid>
      <dc:creator>jaksptr99</dc:creator>
      <dc:date>2015-05-06T08:31:52Z</dc:date>
    </item>
    <item>
      <title>Hi,It is not supported and i</title>
      <link>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705607#M191892</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;It is not supported and i don't think there can be any workaround for this issue on the ASA device.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Wed, 06 May 2015 11:05:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705607#M191892</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-05-06T11:05:13Z</dc:date>
    </item>
    <item>
      <title>ok Vibhor, after searching</title>
      <link>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705608#M191893</link>
      <description>&lt;P&gt;ok Vibhor, after searching for some references, it is clear that this is not supported.&lt;/P&gt;&lt;P&gt;thank you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Jack.&lt;/P&gt;</description>
      <pubDate>Fri, 08 May 2015 03:27:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705608#M191893</guid>
      <dc:creator>jaksptr99</dc:creator>
      <dc:date>2015-05-08T03:27:14Z</dc:date>
    </item>
    <item>
      <title>Hi,I a[apologize but this is</title>
      <link>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705609#M191894</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I a[apologize but this is not yet supported. I think this might be integrated in the ASA code but not sure about the timeline and the requirement for this feature.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Fri, 08 May 2015 13:05:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705609#M191894</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-05-08T13:05:23Z</dc:date>
    </item>
    <item>
      <title>I'm having the same issues</title>
      <link>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705610#M191895</link>
      <description>&lt;P&gt;I'm having the same issues and want to define FQDN names in ACL's to whitelist o365 domains in WCCP ACL policy. I'm running WCCP on a C3850 IOS-XE 3.07.00E. I'm wondering you can work with passthru-domain-list and apply it to the ACL WCCP policy in some way?&lt;/P&gt;</description>
      <pubDate>Thu, 03 Nov 2016 14:52:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/2705610#M191895</guid>
      <dc:creator>ciscor1senb</dc:creator>
      <dc:date>2016-11-03T14:52:06Z</dc:date>
    </item>
    <item>
      <title>Re: WCCP "Whitelist" Redirect List Using FQDN?</title>
      <link>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/3684135#M191896</link>
      <description>&lt;P&gt;Not sure if you know but it appears to be working on my ASA.&amp;nbsp; I am running a 5512x with version 9.9.2(1)&lt;/P&gt;
&lt;P&gt;But even just recently with this bug ID&amp;nbsp;&lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCuu26174/?rfs=iqvred" target="_blank"&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCuu26174/?rfs=iqvred&lt;/A&gt; it states still not supported.&amp;nbsp; I recently setup up some FQDN, not thinking, for a particular vendor we are having proxy issues with and it allowed me to create an object-group with FQDN and place that group in the ACL for WCCP...... &amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 08 Aug 2018 13:53:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/wccp-quot-whitelist-quot-redirect-list-using-fqdn/m-p/3684135#M191896</guid>
      <dc:creator>lori_woodward@acmestores.com</dc:creator>
      <dc:date>2018-08-08T13:53:16Z</dc:date>
    </item>
  </channel>
</rss>

