<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Problem with ASA and Blue Coat in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054467#M915947</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry for late reply!&lt;/P&gt;&lt;P&gt;Now I removed that device from network. Today night I will do the configuration and let you know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;som&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 28 Jul 2008 03:56:55 GMT</pubDate>
    <dc:creator>somnath21</dc:creator>
    <dc:date>2008-07-28T03:56:55Z</dc:date>
    <item>
      <title>Problem with ASA and Blue Coat</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054462#M915938</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;We have ASA 5520 in our network. Blue Coat (SG 510) is connected behind the ASA for web filtering. Blue Coat is configured as transparent device.&lt;/P&gt;&lt;P&gt;Blue Coat IP is 10.138.74.5.&lt;/P&gt;&lt;P&gt;Now the problem is from last one moth I am getting high BW utilization issue. Whenever I have connected the Blue Coat the BW utilization increased very high.&lt;/P&gt;&lt;P&gt;We have 4 MB internet link and sometimes it choke the entire BW. If I removed the Blue Coat everything normalized and working fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To resolve this issue I checked with Blue Coat vendor and after long experiment they told that problem with ASA configuration.&lt;/P&gt;&lt;P&gt;In Blue Coat logs we are getting lots public ip which should show internal ip only.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have checked my ASA access-list configuration and didn't get anything wrong.In my ASA I have access-list configured for inbound access in Outside interface only.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have attached my ASA configuration and Blue Coat logs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any kind of help would be appreciatedâ&amp;#128;¦.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;som&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 13:20:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054462#M915938</guid>
      <dc:creator>somnath21</dc:creator>
      <dc:date>2019-03-11T13:20:34Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with ASA and Blue Coat</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054463#M915940</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Somenath,&lt;/P&gt;&lt;P&gt;I filtered the requests from the Public Ip's in the Blucoat logs you have provided.&lt;/P&gt;&lt;P&gt;All these requests were of the following types :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TCP_MISS  = The requested object was not in the cache.&lt;/P&gt;&lt;P&gt;TCP_NC_MISS =	Object returned from the origin server was non-cacheable.&lt;/P&gt;&lt;P&gt;TCP_PARTIAL_MISS =	Object is in cache, but retrieval from the origin server is in progress.&lt;/P&gt;&lt;P&gt;TCP_ERR_MISS  = An error occurred while retrieving the object from the origin server.&lt;/P&gt;&lt;P&gt;TCP_TUNNELED  = The CONNECT method was used to tunnel this request (generally proxied HTTPS).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is possible that the Bluecoat device is misconfigured which is allowing connections like an open proxy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are allowing incoming connections from the internet to the Bluecoat Public IP then you need to block it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please share your ASA config, which will help to analyse better.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 26 Jul 2008 08:19:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054463#M915940</guid>
      <dc:creator>dhananjoy chowdhury</dc:creator>
      <dc:date>2008-07-26T08:19:04Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with ASA and Blue Coat</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054464#M915942</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Plz find my ASA config..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;plz help to resolve this issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;som&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 26 Jul 2008 09:26:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054464#M915942</guid>
      <dc:creator>somnath21</dc:creator>
      <dc:date>2008-07-26T09:26:43Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with ASA and Blue Coat</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054465#M915944</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry , I missed your statement above " Bluecoat  device is in transparent mode" so the possibility of the bluecoat device as open proxy is ruled out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now I am still thinking of how the request from a Public IP is reaching your bluecoat device.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 26 Jul 2008 10:36:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054465#M915944</guid>
      <dc:creator>dhananjoy chowdhury</dc:creator>
      <dc:date>2008-07-26T10:36:04Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with ASA and Blue Coat</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054466#M915945</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, Can you try configuring the Web Access Layer rules as per below:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1 Allow only your inside IP subnets to Any Destination&lt;/P&gt;&lt;P&gt;2 Deny any(source) any(Destination)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Jul 2008 07:41:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054466#M915945</guid>
      <dc:creator>dhananjoy chowdhury</dc:creator>
      <dc:date>2008-07-27T07:41:19Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with ASA and Blue Coat</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054467#M915947</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry for late reply!&lt;/P&gt;&lt;P&gt;Now I removed that device from network. Today night I will do the configuration and let you know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;som&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 28 Jul 2008 03:56:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054467#M915947</guid>
      <dc:creator>somnath21</dc:creator>
      <dc:date>2008-07-28T03:56:55Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with ASA and Blue Coat</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054468#M915948</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;yes, I had done that one.&lt;/P&gt;&lt;P&gt;I had removed the entire policy configuartion and given permission any any.It was working fine.After that I have configured the visual policy freshly and it is working fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanx a lot to u!!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Aug 2008 10:51:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054468#M915948</guid>
      <dc:creator>somnath21</dc:creator>
      <dc:date>2008-08-05T10:51:44Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with ASA and Blue Coat</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054469#M915950</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;cool... Glad to know that its working &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Aug 2008 10:53:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-asa-and-blue-coat/m-p/1054469#M915950</guid>
      <dc:creator>dhananjoy chowdhury</dc:creator>
      <dc:date>2008-08-05T10:53:00Z</dc:date>
    </item>
  </channel>
</rss>

