Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Working With Web DLP > Configuring the ICAP client
Configuring the ICAP client
Help | Content Gateway | Version 8.0.x
ICAP can be used with any version of TRITON AP-DATA or Websense Data Security, however the direct interface is recommended when the policy engine is on-box with Content Gateway. See Registering and configuring TRITON AP-DATA.
ICAP must be used for inter-operation with Data Security Suite versions 7.1 and earlier.
 
Note 
To configure integration with ICAP, log on to the Content Gateway manager and go to Configure > My Proxy > Basic > General.
1.
In the Networking section of the Features table, select Web DLP On and then ICAP.
2.
Click Apply, and then click Restart.
3.
Navigate to Configure > Networking > ICAP > General.
4.
In the ICAP Service URI field, enter the Uniform Resource Identifier (URI) for the primary ICAP service, followed by a comma (no space) and the URI of the secondary ICAP service. A secondary ICAP service is optional.
A URI is similar to a URL, but the URI ends with a directory, rather than a page. Obtain the identifier from your Websense data protection administrator. Enter the URI in the following format:
icap://hostname:port/path
For hostname, enter the IP address or hostname of the Websense Data Security Suite Protector appliance.
The default ICAP port is 1344.
Path is the path of the ICAP service on the host machine.
For example:
icap://ICAP_machine:1344/reqmod
You do not need to specify the port if you are using the default ICAP port 1344. For example, the above URI can also be entered without the default port:
icap://ICAP_machine/reqmod
5.
Under Analyze HTTPS Content, indicate if decrypted traffic should be sent to your Websense data protection solution for analysis or sent directly to the destination. The HTTPS protocol option must be enabled to send HTTPS traffic to your Websense data protection solution. See Working With Encrypted Data.
6.
Under Analyze FTP Uploads, select whether to send FTP upload requests to your Websense data protection solution for analysis. The FTP proxy feature must be enabled to send FTP traffic to your Websense data protection solution. See FTP.
7.
Under Action for Communication Errors, select whether to permit traffic or send a block page if Content Gateway encounters an error while communicating with your Websense data protection solution.
8.
Under Action for Large Files, select whether to permit traffic or send a block page if a file larger than the size limit specified in your Websense data protection solution is sent. The default size limit for TRITON AP-DATA and Data Security Suite version 7.0 and later is 12 MB.
9.
Click Apply.
 
Note 
 

Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Working With Web DLP > Configuring the ICAP client
Copyright 2016 Forcepoint LLC. All rights reserved.