
Explore the ProxySG management console to identify major functional areas, observe banner information, and perform additional configuration after initial setup, understanding the preview, revert, and apply buttons.
Configure NTP in the management console by adding the lab server 10.10.2.5, promoting the entry to the top, and enabling NTP with acquire UTC to synchronize time.
Learn to disable automatic logoff for training by deselecting web and CLI auto-logout in the management console and adjust the session timeout.
Enable access logging on the ProxySG to capture raw client requests and track web usage; enable via configuration, access logging, general default logging, then apply.
Explore the management console tabs, navigate configuration and policy, and use the visual policy manager to experiment with default proxy policies. Review statistics and maintenance options.
Configure ProxySG to test explicit client connections by intercepting http traffic, set explicit http listeners to intercept, and verify proxied sessions in the management console using Firefox.
Configure Firefox to bypass the proxy, then set the proxy service to intercept external http and https; observe the proxied session shows info.cern.ch and external http in a transparent deployment.
Analyze http traffic by capturing packets in transparent proxy mode with proxySG, then inspect the http requests in Wireshark to see the client request and proxySG's request to www.example.org.
Learn to capture packets in explicit proxy mode with Firefox, analyze http get requests in Wireshark, identify the proxySG destination and the X-BlueCoat-Via header, and apply practical BPF filters.
Create a two-layer VPM policy to block access to www.cern.ch while allowing your own IP, using the proxySG management console to set destination host/port and install the policy.
Create a VPM rule to allow your client IP address 10.10.2.101, configure a client IP/subnet object, set action to allow, install the policy, and verify access to info.cern.ch.
Create a rule to deny the Firefox user agent in the vpm web access layer, install the policy, verify access is denied, and then delete the layer to clean up.
Enable Blue Coat as a content provider, configure intelligence services, and set policies to block sites while allowing selected web applications; verify via a URL test and WebPulse.
Create and test web access policies with the VPM by configuring destination URL categories (IT-Security-Categories, HR-Policy-Categories, bandwidth-categories) and applying deny rules, then install and validate using test pages.
Create and test an application control policy in Blue Coat ProxySG 6.7 by enabling classification, denying auction traffic, then adding an eBay application layer to allow access.
Enable geolocation and threat risk protection on the proxySG, then create and test location- and risk-based blocking policies using Switzerland and info.cern.ch as a test site.
Enable threat risk protection on the proxy, enable lookups, download the database, and create a deny policy for threat risk levels 8–10; test lookups and monitor risk details.
Create and test a policy based on apparent data type in the visual policy manager (VPM) to block an executable disguised as a text file.
Create a policy to strip active content by adding a rule for gray-area url categories and applying strip active content, then test with www.jpn.co.jp.
Load a pre-defined exception file on a ProxySG to configure policy-denied pages that warn and block users, customize messages, and review exception details and expanded settings.
Launch the VPM and create a policy to deny the proxy avoidance category, install it, and test in Firefox at sitereview.bluecoat.com, including a user-defined exception.
Customize the built-in exception page by creating a return exception object, naming it uniquely, selecting policy_denied, and entering a detail message with category and proxy variables; install policy and test.
The ProxySG 6.7 Basic Administration course is an introduction to deployment options and management of the individual key features offered using the ProxySG 6.7 solution. This an introductory course and is designed for students who are new to the ProxySG solution.
By the completion of this course, you will be able to:
• Describe the major Secure Web Gateway functions of the ProxySG
• License and configure a ProxySG
• Deploy a ProxySG in either explicit or transparent mode
• Use the Visual Policy Manager to write policies to manage web filtering, authentication, and SSL traffic management
• Use ProxySG access logs to generate reports