Important 
All service group attributes are propagated around the cluster except the service group enabled/disabled state, the specified network interface, and the weight.
*
Except the enabled/disabled setting, the specified network interface, and the weight, if used, which must be set on each node.
*
To define service groups, go to Configure > Networking > WCCP.
The Service Groups table displays the list of configured service groups and a subset of their configuration settings.
The Refresh button rereads wccp.config and refreshes the table.
1.
On Configure > Networking > WCCP, click Edit File to open wccp.config in the editor.
a.
Service Group Status: To enable a service group, select Enabled. A service group can be defined but not active. The enabled/disabled status is not propagated around the cluster.
b.
Service Group Name: Specify a unique service group name. The service group name is an aid to administration.
c.
Service Group ID: Specify a WCCP service group identification number from 0-255. This ID must match a corresponding service group ID configured on the router. See Configuring service groups on the WCCP device.
d.
Protocol: Specify the network protocol applicable to the service group, either TCP or UDP.
e.
Ports: Specify the ports that this service group will use. You can specify up to 8 ports in a comma-separated list.
Important 
f.
Network Interface: From the drop down list, select the network interface on the Content Gateway host system that this service group will use. The Network Interface value is not propagated around the cluster and, therefore, like the Service Group Status value, must be specified on every member of the cluster.
The Packet Forward Method determines how traffic is transmitted from the WCCP router to the proxy.
The Packet Return Method specifies the method used to return traffic back to the WCCP router.
a.
If traffic is routed to the proxy by a Cisco ASA firewall, select ASA Firewall in the Special Device Profile drop down box. When this option is selected, GRE is automatically selected for both Packet Forward Method and Packet Return Method. These settings cannot be changed.
b.
If traffic is routed to the proxy by a router or switch, select the Packet Forward Method and Packet Return Method that matches the capabilities and position of your router or switch.
Packet Forward Method: Select L2 or GRE.
Important 
If GRE is selected, for every router in the service group a unique Content Gateway tunnel endpoint IP address must be specified in the WCCP Routers section (see the Router Information step, below).
Packet Return Method: Select L2 or GRE.
Important 
a.
Assignment Method: Specify the parameters used to distribute intercepted traffic among multiple nodes in a cluster. It can be used in combination with Weight to provide dynamic load distribution. For a description of the WCCP load distribution feature, see WCCP load distribution.
HASH applies a hash operation to the selected distribution attributes.
MASK applies a mask operation to the selected distribution attribute.
b.
Weight: For proportional load distribution, specify a value from 0-255. This value determines the proportional distribution of load among servers in a cluster.
Important 
When the value of weight is greater than 0 on any member of the cluster, any member of the cluster with a weight of 0 receives no traffic. If you plan to use weight, be sure to set the weight on every member of the cluster.
Note 
Because the value of weight determines the proportional distribution relative to the value set on other cluster members, the value of weight is not propagated around the cluster.
c.
Reverse Service Group ID: Allows you to specify a reserve service group ID.
Note 
Note 
Note 
a.
Security: To use optional WCCP authentication, select Enabled and enter the same password used for service group authentication on the router. See Enabling WCCP v2 security on the router.
b.
Multicast: To run in multicast mode, select Enabled and enter the multicast IP address. The multicast IP address must match the multicast IP address specified on the router. See Transparent interception and multicast mode.
Important 
c.
WCCP Routers: Specify up to 10 WCCP Router IP Addresses. These routers must be configured with a corresponding service group.
If GRE is selected for Packet Forward Method or Packet Return Method, also specify a Local GRE Tunnel Endpoint IP address for each router, (including ASA firewall, and optionally, a GRE Tunnel Next Hop Router IP Address.
The Local GRE Tunnel Endpoint IP address is the Content Gateway tunnel endpoint for the associated Router IP Address.
The Local GRE Tunnel Endpoint IP Address:
When GRE Packet Return Method is configured and Content Gateway does not have a route back to the WCCP router, specify a GRE Tunnel Next Hop Router IP Address.
*
If ping doesn't return a response, you need to define a GRE Tunnel Next Hop to that router. Intervening routers must have a route to the WCCP router, or a next hop.
Note 
WCCP routers that have multiple interfaces assign the Router ID to the interface with the highest numeric value IP address. Content Gateway must be able to connect to the router ID to negotiate the method. To ensure connectivity and that the router ID doesn't change unexpectedly, it is a best practice to make the router loopback address the highest IP address. This also ensures that traffic and statistics reported on the Monitor > Networking > WCCP page are reported against a known router ID.
6.
Click Add to an entry, or click Set to save changes to an existing entry.
7.
Click Close to close the editor.
8.
On the Configure > Networking > WCCP page, click Apply to apply changes. Navigating away from the page before clicking Apply results in the loss of all changes.
9.
Restart the proxy to cause the changes to take effect. Go to Configure > My Proxy > Basic > General and click Restart.
Note 
To check that the router is sending traffic to the proxy, examine the statistics in the Content Gateway Manager Monitor pane. For example, check that the Objects Served statistic in the My Proxy > Summary section increases.