05-15-2010 12:46 AM
Hi,
I am facing some issue with bluecoat for caching. When i do the WCCP configuration on normal switch it works fine. Users can access the internet but when i configure WCCP on ASA the i can't see any traffic redirected. Details are as follows:
Physical topology:
Bluecoat------->Cat 6509E-------->Cat 6506E------->Cat2960--------->ASA5540
Logical topology:
Bluecoat------>ASA5540
Bluecoat IP: 10.57.56.1
Bluecoat GW: 10.57.56.7(ASA IP)
ASA5540 Configs:
access-list 101 extended permit ip any any
access-group 101 in interface WIRELESS
interface GigabitEthernet0/1.57
vlan 57
nameif WIRELESS
security-level 50
ip address 10.57.56.1 255.255.252.0 standby 10.57.56.2
AT-INET-FW# sh run | in wccp
wccp web-cache
wccp interface WIRELESS web-cache redirect in
AT-INET-FW# show wccp
Global WCCP information:
Router information:
Router Identifier: -not yet determined-
Protocol Version: 2.0
Service Identifier: web-cache
Number of Cache Engines: 0
Number of routers: 0
Total Packets Redirected: 0
Redirect access-list: -none-
Total Connections Denied Redirect: 0
Total Packets Unassigned: 0
Group access-list: -none-
Total Messages Denied to Group: 0
Total Authentication failures: 0
Total Bypassed Packets Received: 0
Please let me know what could be the possible issue? Am i missing any configuration step in this?
05-15-2010 01:20 AM
Does it matter to connect the bluecoat with ASA directly? Or the logical connectivity i had mentioned above is fair enough?
05-17-2010 06:56 AM
Can you confirm the IP addresses of your devices? It seems like you may have them reversed.
Thanks,
Zach
05-17-2010 10:29 AM
Actually that was a typing error. Bluecoat IP is 10.57.56.7 and ASA IP is 10.57.56.1(Bluecoat's and users gateway is ASA IP and there is where i had configured WCCP but it's not working
05-17-2010 11:55 AM
The configuration looks fine. From the output you provided, it doesn't look like the ASA is getting the HIA messages from the Bluecoat proxy.
Can you enable debug wccp events and debug wccp packets on the ASA so we can tell what's going on?
Thanks,
Zach
05-18-2010 01:45 PM
I had shifted the Bluecoat to the perimeter router and it's working fine.
05-19-2010 06:08 AM
Can you describe in more detail what was changed?
Thanks,
Zach
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide