11-12-2009 08:52 PM - edited 03-11-2019 09:39 AM
Dear All,
I want to ask about the WCCP feature in ASA 8.x
I am using squid proxy as a transparent mode. What should I do to redirect the user web traffic to this proxy passthrough the ASA?
The ASA is configured with the sub interface. And the users is in different subnet with the proxy.
Can we do the redirect progress in this case ?
âWCCP redirect is supported only on the ingress of an interface. The only topology that the security appliance supports is when client and cache engine are behind the same interface of the security appliance and the cache engine can directly communicate with the client without going through the security appliance.â (http://www.cisco.com/en/US/docs/security/asa/asa72/configuration/guide/dhcp.html)
Thx for the response.
11-13-2009 08:29 AM
If the proxy is behind a different subinterface compared to your users that need to be redirected it won't work.
The squid needs to be behind the same interface/subinterface as the users to be redirected.
I hope it helps.
PK
11-13-2009 08:04 PM
The squid should in the same interface/subinterface or in the same network ID?
For example, at INSIDE interface in ASA, I have L3 switch which have server vlan and client vlan. It is possible to use wccp in this case? Because the traffic will out from the same interface (INSIDE) but with different network ID (squid in vlan server and client in vlan client).
Thx.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide