<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic URL / Web content filter in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932120#M458322</link>
    <description>&lt;P&gt;hello all!&amp;nbsp; We are currently looking to replace our PIX 515e's with something newer.&amp;nbsp; The hang up is we want to look at something else besides Websense for our URL / Web Content filtering specifically because of price on renewal's.&amp;nbsp; We do not currently have IDS / IPS in place unless you count the Websense as doing that (maybe just a little bit?) and it would be nice to add that capability.&amp;nbsp; I've had experience with the Palo Alto box as a UTM in the past however we want to stick with Cisco where I'm at presently.&amp;nbsp; So what we're looking at is the new ASA 5515-X or 5525-X (HA pair) with IPS plus something else for the web filtering side (besides Websense).&amp;nbsp; We're getting quotes on the IronPort S160 however my guess is it's going to be just as pricy as Websense, probably the same for Scan Safe.&amp;nbsp; Right now we're at about 300 users but are looking to double that in the next year.&amp;nbsp; What are some other good solutions out there?&amp;nbsp; Easey to manage would be nice, less expensive would be nice, effective would be nice.&amp;nbsp; Can we get that all together?&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 22:40:17 GMT</pubDate>
    <dc:creator>MooreIT01</dc:creator>
    <dc:date>2019-03-11T22:40:17Z</dc:date>
    <item>
      <title>URL / Web content filter</title>
      <link>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932120#M458322</link>
      <description>&lt;P&gt;hello all!&amp;nbsp; We are currently looking to replace our PIX 515e's with something newer.&amp;nbsp; The hang up is we want to look at something else besides Websense for our URL / Web Content filtering specifically because of price on renewal's.&amp;nbsp; We do not currently have IDS / IPS in place unless you count the Websense as doing that (maybe just a little bit?) and it would be nice to add that capability.&amp;nbsp; I've had experience with the Palo Alto box as a UTM in the past however we want to stick with Cisco where I'm at presently.&amp;nbsp; So what we're looking at is the new ASA 5515-X or 5525-X (HA pair) with IPS plus something else for the web filtering side (besides Websense).&amp;nbsp; We're getting quotes on the IronPort S160 however my guess is it's going to be just as pricy as Websense, probably the same for Scan Safe.&amp;nbsp; Right now we're at about 300 users but are looking to double that in the next year.&amp;nbsp; What are some other good solutions out there?&amp;nbsp; Easey to manage would be nice, less expensive would be nice, effective would be nice.&amp;nbsp; Can we get that all together?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:40:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932120#M458322</guid>
      <dc:creator>MooreIT01</dc:creator>
      <dc:date>2019-03-11T22:40:17Z</dc:date>
    </item>
    <item>
      <title>URL / Web content filter</title>
      <link>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932121#M458324</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Consider this it's late, so I'm not at the top of my game:&lt;/P&gt;&lt;P&gt;- CSC module (instead of IPS) &lt;/P&gt;&lt;P&gt;- ASA + WCCP + Squid + dansguardian (although&amp;nbsp; ASA's WCCCP implmentation is limited)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I think you can only pick two of the three: good, fast, easy to manage &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;M.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Mar 2012 21:13:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932121#M458324</guid>
      <dc:creator>Marcin Latosiewicz</dc:creator>
      <dc:date>2012-03-09T21:13:08Z</dc:date>
    </item>
    <item>
      <title>URL / Web content filter</title>
      <link>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932122#M458326</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; No problem, thanks for the reply.&amp;nbsp; I thought about the CSC-20 module however that's been dropped on the new ASA line (no module slot at all) so if I wanted to do that I'd have to stay with the current generation of ASA's (like the 5510 or 5520).&amp;nbsp; That's a possibilty however it would stink to refresh on something that's being phased out.&amp;nbsp; Well, I guess it's not being phased out however the newer generation seems to be the direction Cisco is going.&amp;nbsp; It does have IPS built-in without the need for a module which is good however for the URL / web filtering with Cisco the choices are IronPort or Scan Safe.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There's several open source type solutions that interest me however we don't currently have any dedicated security / firewall staff and for me to implement something like that would take a lot of time.&amp;nbsp; I know enough linux to get to the command line...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Mar 2012 21:24:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932122#M458326</guid>
      <dc:creator>MooreIT01</dc:creator>
      <dc:date>2012-03-09T21:24:56Z</dc:date>
    </item>
    <item>
      <title>URL / Web content filter</title>
      <link>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932123#M458327</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Looking at your post on other threats it seems like you did your reserach before opening this thread. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes, the long run looks a great in regards to features coming in - but as you said price is a factor, and most likely (I don't know for sure because nothing has been shared with me)&amp;nbsp; the new functionalities will be licensed in one way or another. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Every ASA has some sort of "IPS" functionality built in, it's nothing advanced - called IP audit. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm sorry I'm out of ideas at 11:30 PM &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;M.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 09 Mar 2012 22:38:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932123#M458327</guid>
      <dc:creator>Marcin Latosiewicz</dc:creator>
      <dc:date>2012-03-09T22:38:49Z</dc:date>
    </item>
    <item>
      <title>URL / Web content filter</title>
      <link>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932124#M458330</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No prob, I appreciate your thoughts.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've looked at the Untangle stuff before but from what I've read it poops all over tagged VLAN traffic (&lt;A href="http://forums.untangle.com/networking/2832-trunking-problem-untangle.html"&gt;http://forums.untangle.com/networking/2832-trunking-problem-untangle.html&lt;/A&gt;) and that wouldn't work for us.&amp;nbsp; What about smoothwall i.e. the actual pay for appliance, anybody have any experience with that?&amp;nbsp; Seems pretty popular in Europe.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 10 Mar 2012 04:42:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932124#M458330</guid>
      <dc:creator>MooreIT01</dc:creator>
      <dc:date>2012-03-10T04:42:39Z</dc:date>
    </item>
    <item>
      <title>URL / Web content filter</title>
      <link>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932125#M458332</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Why not just a transparent squid implementation between users and the ASA?&amp;nbsp; there is plenty of documentation, and if you're not fully comfortable with Linux, there is always Webmin to put a web management GUI on the box.&amp;nbsp; You can configure squid with Webmin and handle any kind of maintenance, updates, scheduled tasks, file transfers, etc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am doing similar running squid here, just not transparently.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 14 Mar 2012 12:41:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932125#M458332</guid>
      <dc:creator>Mark^</dc:creator>
      <dc:date>2012-03-14T12:41:01Z</dc:date>
    </item>
    <item>
      <title>URL / Web content filter</title>
      <link>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932126#M458334</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks, I'll start reading up on it.&amp;nbsp; Do you know if it handles traffic from multiple networks ok?&amp;nbsp; First couple of google results don't look promising...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 14 Mar 2012 13:30:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932126#M458334</guid>
      <dc:creator>MooreIT01</dc:creator>
      <dc:date>2012-03-14T13:30:05Z</dc:date>
    </item>
    <item>
      <title>URL / Web content filter</title>
      <link>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932127#M458336</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Don't know about traffic from multiple networks.&amp;nbsp; Offhand, I can't think of why this would be a problem for squid itself, other than it may complicate the config a little bit -- but it may not.&amp;nbsp; I did a quick Google and didn't see anything that indicated it may be a problem, but I probably didn't click as many links as you did &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Squid is just one option.&amp;nbsp; The disadvantage of squid compared to a paid-for service, in my opinion, is that you either have to get lists from somewhere or manually create your own block and allow lists.&amp;nbsp; Because of that, I use a combination of OpenDNS to block the obvious like porn, and then I use squid for more granular control like managament can view job searching sites, but other users cannot.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With squid, you have so many options though.&amp;nbsp; For example, you could setup a scheduled task to download current lists from your source of choice and apply them to squid ACLs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am a much smaller shop though, so this works for me.&amp;nbsp; 300-600 users changes things up a little depending on what you want to accomplish.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 14 Mar 2012 13:55:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932127#M458336</guid>
      <dc:creator>Mark^</dc:creator>
      <dc:date>2012-03-14T13:55:14Z</dc:date>
    </item>
    <item>
      <title>URL / Web content filter</title>
      <link>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932128#M458338</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for your help with all of this Mark, we wound up renewing with Websense since we ran out of time.&amp;nbsp; They did get aggressive on the pricing however.&amp;nbsp; Essentially we've postponed out decision for one more year, my guess is that next year we'll do something different altogether.&amp;nbsp; Maybe Cisco will have an "IronPort" module for their new line of ASA's &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;.&amp;nbsp; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 May 2012 21:07:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/url-web-content-filter/m-p/1932128#M458338</guid>
      <dc:creator>MooreIT01</dc:creator>
      <dc:date>2012-05-09T21:07:07Z</dc:date>
    </item>
  </channel>
</rss>

