Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi all,
I have a pair of S390. We want to deploy them in transparent mode. Our target is to redirect the web traffic using WCCP.
I found this article and read the answer already.
https://supportforums.cisco.com/discussion/11753771/wsa-redundancy-an...
Hi Keyur,It is possible.https://www.cisco.com/c/en/us/td/docs/security/wsa/wsa11-0/user_guide/b_WSA_UserGuide/b_WSA_UserGuide_chapter_01001.html#con_1334317Create as few Active Directory realms as is practical. Multiple Active Directory realms requir...
Hi Keyur, Are you asking about how to create second realm or how to make use of it? The tricky part is making use of it.In your identification profile, you should make use of the more specific realm, for specific networks. You need to define specific...
Hi Sekou, I would recommend using the native High Availability option in WSA. If you don't you would need some tricks to get Kerberos working. It will always work with NTLM authentication, using load balancer or WSA native High Availability feature....
Hi,If you are using the same realm name it should not prevent you from using SMA. Sma is using the configurations under the Web Security menu. There, you have your identification profile. Your identification profile knows which realm it will consum...
Hi,You actually don't need CDA or ISE at all. I recently performed an installation to a customer. I started with CDA then had to give up. If you are using CDA, in some cases you might end up with wrong ip user mappings. (When clients connect to Remo...