I'm going from memory here, but I think I had found a solution to this problem. The issue was with the L4 traffic monitor, which was why the bypass settings never worked. In Security Services > L4 Traffic Monitor I changed the "Traffic Monitored On...
But what actually constitutes a bad gateway? If the Ironport is bypassed, whether through it's web security bypass settings or through the WCCP access rules, the site comes up clean and quick. Short of bypassing security settings, which one obvious...
I have this exact same problem. The site is http://www.livingonadime.com. The logs show:1316707148.641 150275 172.29.30.30 NONE/502 4030 GET http://www.livingonadime.com/ - DIRECT/www.livingonadime.com - OTHER-NONE-DefaultGroup-NONE-NONE-NONE-Defau...