cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1119
Views
0
Helpful
1
Replies

Wireless Guest - Proxy Bluecoat redirection

roy.sam
Level 1
Level 1

I have a Guest/DMZ WLC terminating EoIP tunnel. After the user is authenticated by Web Auth, only HTTP/HTTPS traffic is required to redirect to Bluecoat Proxy for filtering.

The Bluecoat Proxy and DMZ WLC wireless guest users are located in different DMZ subnets. How can I achieve the URL filtering for the Guest users?

The WLC management interface is in the same subnet as the Proxy server.

Wireless guest users should not use .pac file.

1 Reply 1

securityfirst
Level 1
Level 1

We had little success chaining Guest Web Auth with a proxy configuration.

Except using one trick:

Have your bluecoat proxy listening on port 80/443.

Additionaly it is possible to open DNS and WEB to a WPAD server before auth occurs (pre-auth ACL)

Hope it helps

Review Cisco Networking for a $25 gift card