cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
593
Views
0
Helpful
1
Replies

Ironport setup

I  have a recently acquired an Ironport WSA 170 web appliance. My current setup is i am running 2 Microsoft ISA servers where users are getting their internet.

I have deployed the WSA behind the proxies so that I filter web traffic. WSA is configured in explicit forward mode. The problem  I am having is that the web traffic is not getting filtered.

Please help

1 Reply 1

Erik Kaiser
Cisco Employee
Cisco Employee

Hi Tiyanjane,

Grep for  the access logs on the WSA using the IP of a test PC while tailing the logs in order to determine whether or not the traffic is being filtered by the WSA.

To grep the access logs for an entry, SSH into the WSA and run the following command from the CLI:

1. Grep

2. Enter the number of the log you wish to grep.

[]> 1

3. Enter the regular expression to grep.

[]> IP of the PC that the issue is being re produced on.

4. Do you want this search to be case insensitive? [Y]>

5. Do you want to search for non-matching lines? [N]>

6. Do you want to tail the logs? [N]> Yes

7. Do you want to paginate the output? [N]>

Sincerely,

Erik Kaiser
WSA CSE
WSA Cisco Forums Moderator

Sincerely, Erik Kaiser WSA CSE WSA Cisco Forums Moderator