<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Proxy Server in DMZ in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462208#M708229</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As advised earlier, WCCP will only work if the proxy server is in the inside network, not when it's on DMZ.&lt;/P&gt;&lt;P&gt;WCCP only supports traffic being redirected through the same interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As per the following:&lt;/P&gt;&lt;P&gt;WCCP redirect is supported only on the ingress of an interface. The only topology that the adaptive security appliance supports is when client and cache engine are behind the same interface of the adaptive security appliance and the cache engine can directly communicate with the client without going through the adaptive security appliance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;quoted from:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/conns_wccp.html#wp1094628"&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/conns_wccp.html#wp1094628&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 04 Jul 2010 08:38:17 GMT</pubDate>
    <dc:creator>Jennifer Halim</dc:creator>
    <dc:date>2010-07-04T08:38:17Z</dc:date>
    <item>
      <title>Proxy Server in DMZ</title>
      <link>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462203#M708224</link>
      <description>&lt;P&gt;Dear All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have an ASA 5520 with inside, outside, and DMZ interfaces. I want to install a proxy server in&amp;nbsp; DMZ and have all my inside hosts go to the proxy first, before accessing the internet. If I don't want to configure a proxy-server address on each of my internal hosts, is there a way to configure port redirection on the ASA to automaticaly send all outbound internet traffic to the proxy server?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 18:07:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462203#M708224</guid>
      <dc:creator>rmujeeb81</dc:creator>
      <dc:date>2019-03-11T18:07:29Z</dc:date>
    </item>
    <item>
      <title>Re: Proxy Server in DMZ</title>
      <link>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462204#M708225</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ASA only supports N2H2 or Websense to perform URL filtering via the ASA itself, without having to configure proxy server settings on the inside hosts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Alternatively, if the proxy server supports WCCP, that also works with ASA, however, proxy server needs to be connected to the inside interface as well where the internal hosts are connected. Proxy server can't be connected to the DMZ while the traffic is from inside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Jul 2010 07:10:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462204#M708225</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-07-04T07:10:14Z</dc:date>
    </item>
    <item>
      <title>Re: Proxy Server in DMZ</title>
      <link>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462205#M708226</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The proxy is actually ISA and we will install it in DMZ as one leg design. If there is no option to redirect web traffic to ISA then we have last option of using proxy ip address in web browsers ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Jul 2010 07:21:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462205#M708226</guid>
      <dc:creator>rmujeeb81</dc:creator>
      <dc:date>2010-07-04T07:21:41Z</dc:date>
    </item>
    <item>
      <title>Re: Proxy Server in DMZ</title>
      <link>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462206#M708227</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Unfortunately there is no other option on ASA but to configure the proxy ip address on the web browser.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Jul 2010 07:23:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462206#M708227</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-07-04T07:23:44Z</dc:date>
    </item>
    <item>
      <title>Re: Proxy Server in DMZ</title>
      <link>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462207#M708228</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your response.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What about using WCCP,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/conns_wccp.html"&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/conns_wccp.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Jul 2010 07:49:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462207#M708228</guid>
      <dc:creator>rmujeeb81</dc:creator>
      <dc:date>2010-07-04T07:49:46Z</dc:date>
    </item>
    <item>
      <title>Re: Proxy Server in DMZ</title>
      <link>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462208#M708229</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;As advised earlier, WCCP will only work if the proxy server is in the inside network, not when it's on DMZ.&lt;/P&gt;&lt;P&gt;WCCP only supports traffic being redirected through the same interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As per the following:&lt;/P&gt;&lt;P&gt;WCCP redirect is supported only on the ingress of an interface. The only topology that the adaptive security appliance supports is when client and cache engine are behind the same interface of the adaptive security appliance and the cache engine can directly communicate with the client without going through the adaptive security appliance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;quoted from:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/conns_wccp.html#wp1094628"&gt;http://www.cisco.com/en/US/docs/security/asa/asa82/configuration/guide/conns_wccp.html#wp1094628&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 04 Jul 2010 08:38:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/proxy-server-in-dmz/m-p/1462208#M708229</guid>
      <dc:creator>Jennifer Halim</dc:creator>
      <dc:date>2010-07-04T08:38:17Z</dc:date>
    </item>
  </channel>
</rss>

