03-15-2019 05:28 AM
My WSA appliances can service http/https traffic when configured in explicit forward mode (no WSA https proxy enabled).
However I am unable to get Transparent mode https redirection to work unless I enable https proxy mode on the WSA.
An ASA is doing the WCCP redirection for http/https traffic. It appears that http redirection works as expected.
Could somebody explain why http/https work in explicit proxy mode without https proxy enabled on the WSA and is there a way to get https rwccp redirection to work in Transparent mode without https proxy enabled.
thanks
Ian
03-17-2019 04:55 PM
Retro
04-01-2019 09:33 AM
f you can make logs or images available, it is easier to help you.
04-09-2019 04:19 PM
So this is the one thing I have struggled with the WSA/ASA WCCP pair for a while. I recently found out that in the ASA WCCP implementation HTTPS DNS traffic is not forwarded to the WSA. Without the DNS information redirected the WSA is unable to filter or see the traffic for HTTPS. So this limitation is actually the ASA, and impacts any ASA WCCP compatible proxy solution.
There may also be a way to change this default ASA behavior.
04-09-2019 04:52 PM
04-10-2019 07:43 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide