Websense integration to the Firewall

Unanswered Question
Nov 12th, 2008

We have a PIX facing the Internet and recently introduced Websense for URL filtering. The method we use to send the traffic to websense is using a SPAN port on the core switch's interface that the INSIDE interface of the firewall connects to. This works very well for all users on the INSIDE network.

However we also have RA VPN users that also require to access the Internet and we are unsure how to force their traffic to Websense given they are coming from the OUTSIDE interface.

One thing we do know that there is a feature on the firewall to send http, https, ftp, java and active-x to websense regardless of which interface the traffic is coming from.

Any thoughts?

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
rtjensen4 Wed, 11/12/2008 - 14:21

We use:

filter url

Ex:

filter url http 10.220.34.0 255.255.255.0 0.0.0.0 0.0.0.0 allow

along with the url server definition:

url-server (inside) vendor websense host 10.1.1.35 timeout 10 protocol UDP version 4

hope that helps.

Actions

This Discussion