Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Working With Websense Data Security > Configuring the ICAP client
Configuring the ICAP client
Help | Content Gateway | Version 7.8.x
ICAP can be used with any version of Websense Data Security, however the direct interface is recommended when the policy engine is on-box with Content Gateway. See Registering and configuring Data Security.
ICAP must be used for inter-operation with Data Security Suite versions 7.1 and earlier.
 
Note 
To configure integration with ICAP, log on to the Content Gateway manager and go to Configure > My Proxy > Basic > General.
1.
In the Networking section of the Features table, select Data Security On.
2.
Click Apply, and then click Restart.
3.
Navigate to Configure > Networking > ICAP > General.
4.
In the ICAP Service URI field, enter the Uniform Resource Identifier (URI) for the primary ICAP service, followed by a comma (no space) and the URI of the secondary ICAP service. A secondary ICAP service is optional.
A URI is similar to a URL, but the URI ends with a directory, rather than a page. Obtain the identifier from your Websense Data Security Suite administrator. Enter the URI in the following format:
icap://hostname:port/path
For hostname, enter the IP address or hostname of the Websense Data Security Suite Protector appliance.
The default ICAP port is 1344.
Path is the path of the ICAP service on the host machine.
For example:
icap://ICAP_machine:1344/REQMOD
You do not need to specify the port if you are using the default ICAP port 1344. For example, the above URI can also be entered without the default port:
icap://ICAP_machine/REQMOD
5.
Under Analyze HTTPS Content, indicate if decrypted traffic should be sent to Websense Data Security for analysis or sent directly to the destination. The HTTPS protocol option must be enabled to send traffic to Data Security. See Working With Encrypted Data.
6.
Under Analyze FTP Uploads, select whether to send FTP upload requests to Websense Data Security Suite for analysis. The FTP proxy feature must be enabled to send FTP traffic to Websense Data Security. See FTP.
7.
Under Action for Communication Errors, select whether to permit traffic or send a block page if Content Gateway encounters an error while communicating with Data Security Suite.
8.
Under Action for Large Files, select whether to permit traffic or send a block page if a file larger than the size limit specified in Data Security Suite is sent. The default size limit for Data Security Suite version 7.0 and later is 12 MB.
9.
Click Apply.
 
Note 
 

Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Working With Websense Data Security > Configuring the ICAP client
Copyright 2016 Forcepoint LLC. All rights reserved.