ā08-26-2018 12:40 PM
Currently a couple of WSAs sit on the inside network.
A network redesign is underway. Relocating the WSAs to the DMZ has been mentioned. I'm failing to find information in support of this(there nothing against it either). Why should this be done? Why shouldn't it be done? It isn't like anyone from the internet will access the appliance, but I could be missing something here.
I appreciate the assistance.
ā08-26-2018 02:53 PM
ā08-27-2018 10:57 AM
ā08-27-2018 11:10 AM
With PAC files you'll be able to redirect the traffic out to the DMZ.
How are you going to do authentication? If you look at ISE-PIC (the replacement for CDA) you may be able to sent authentication info out to the WSA's. I think you'd still have to join the WSAs to the AD to make them completely happy...
Since the WSA is basically a stand-in for the workstation that browses the internet, I don't see it as any different than a workstation...
ā08-27-2018 12:22 PM
ā08-27-2018 12:34 PM
ā08-28-2018 06:58 AM
ā08-29-2018 08:31 AM
ā08-29-2018 09:17 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide