?
Solved

Sophos Web Appliance and Cisco ASA5512

Posted on 2013-11-01
2
Medium Priority
?
563 Views
Last Modified: 2016-02-25
Good day all,

I have a problem in that I've recently purchased a sophos WS100 web filtering appliance. At present, just to make it work I've got all domain users pointing their default gateway at the sophos device. This is fine for HTTP & HTTPS traffic, but any non web ports immediately get blocked as the sophos device doesn't recognise them.

Could anyone advise me on the best way without using explicit proxy to make this work? Also please understand I don't understand the cisco CLI - I'm using the GUI ASDM interface to control it.

Many thanks...
0
Comment
Question by:CDA_Administrator
2 Comments
 
LVL 35

Accepted Solution

by:
Ernie Beek earned 1500 total points
ID: 39623638
You could do a bridged deployment of the appliance. From the Sophos config guide:

Bridged Deployment: All outbound network traffic is routed through the Web Appliance's bridge card, but only port 80 and port 443 traffic is examined. This deployment requires the optional bridge card included with some appliance models. With a Bridged Deployment, network traffic continues to flow in the event of an appliance failure.

That way you only need to configure the appliance, but as stated you'll need a bridge card for that (not sure if you have one).
0
 

Author Closing Comment

by:CDA_Administrator
ID: 39701635
I did manage to get it working via WCCP - however your solution would have don it too, thanks!
0

Featured Post

SMB Security Just Got a Layer Stronger

WatchGuard acquires Percipient Networks to extend protection to the DNS layer, further increasing the value of Total Security Suite.  Learn more about what this means for you and how you can improve your security with WatchGuard today!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Many of the companies I’ve worked with have embraced cloud solutions due to their desire to “get out of the datacenter business.” The ability to achieve better security and availability, and the speed with which they are able to deploy, is far grea…
Let’s face it: one of the reasons your organization chose a SaaS solution (whether Microsoft Dynamics 365, Netsuite or SAP) is that it is subscription-based. The upkeep is done. Or so you think.
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Established in 1997, Technology Architects has become one of the most reputable technology solutions companies in the country. TA have been providing businesses with cost effective state-of-the-art solutions and unparalleled service that is designed…

599 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question