I have an ASA 5520 with inside, outside, and DMZ interfaces. I want to install a proxy server in DMZ and have all my inside hosts go to the proxy first, before accessing the internet. If I don't want to configure a proxy-server address on each of my internal hosts, is there a way to configure port redirection on the ASA to automaticaly send all outbound internet traffic to the proxy server?
As advised earlier, WCCP will only work if the proxy server is in the inside network, not when it's on DMZ.
WCCP only supports traffic being redirected through the same interface.
As per the following:
WCCP redirect is supported only on the ingress of an interface. The only topology that the adaptive security appliance supports is when client and cache engine are behind the same interface of the adaptive security appliance and the cache engine can directly communicate with the client without going through the adaptive security appliance.