cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
25061
Views
15
Helpful
14
Replies

www.linkedin.com not displaying correctly

jonweaver
Level 1
Level 1

Hi,

I'm having trouble with accessing www.linkedin.com

The symptoms are that the page is not displaying correctly. Only links appear on the left hand side of the page. I remember facebook having issues rendering pages incorrectly a while ago.

Because this is in the category of Social Networking, I should instead be receiving a blocked page message. If I add the site manually to this category however, I do get the blocked page.

I do want everyone to be able to access this site (but only allow facebook and other social networking sites via allow rules via this category). To do this, I have added the site to the whitelist but still have issues rendering the website correctly. I have also tried adding the site to the proxy bypass list and still receive the same symptoms.

Can anyone assist please?

The ironport device is s370 with version 7.1.4

I have attached to show what the website looks like.                 

3 Accepted Solutions

Accepted Solutions

We faced bit similar issue . Linkedin pictures were not displaying while  going thorugh proxy because linked is allowed through custom url catagory and social networking is blocked for the user's.

It works after allowing

[a-z|0-9].licdn.com/*

View solution in original post

Erik Kaiser
Cisco Employee
Cisco Employee

The first step in trouble shooting any URL issue is to grep for the access logs.

To grep the access logs for an entry, SSH into the WSA and run the following command from the CLI:

1. Grep

2. Enter the number of the log you wish to grep.

[]> 1

3. Enter the regular expression to grep.

[]> IP of the PC that the issue is being re produced on.

4. Do you want this search to be case insensitive? [Y]>

5. Do you want to search for non-matching lines? [N]>

6. Do you want to tail the logs? [N]> Yes

7. Do you want to paginate the output? [N]>

Once you have the grep output please paste it in this discussion.

Sincerely,

Erik Kaiser

Cisco WSA Forums Moderator

Sincerely, Erik Kaiser WSA CSE WSA Cisco Forums Moderator

View solution in original post

Hi Shaun,

Yes you would add .licdn.com & licdn.com to a custom URL category which you would then add to the Default Access Policy. Leave the action on that custom category to Monitor. This will allow linkedin to work correctly.

Sincerely,

Erik Kaiser

WSA Cisco Forums Moderator

Sincerely, Erik Kaiser WSA CSE WSA Cisco Forums Moderator

View solution in original post

14 Replies 14

jonweaver
Level 1
Level 1

Bumping this one. No ideas anyone?

We faced bit similar issue . Linkedin pictures were not displaying while  going thorugh proxy because linked is allowed through custom url catagory and social networking is blocked for the user's.

It works after allowing

[a-z|0-9].licdn.com/*

Thank You ndc.cisco. I actually just added .licdn.com to our whitelist and no more problems exist.

This is now resolved.

I will Grep first next time - thanks Erik

Erik Kaiser
Cisco Employee
Cisco Employee

The first step in trouble shooting any URL issue is to grep for the access logs.

To grep the access logs for an entry, SSH into the WSA and run the following command from the CLI:

1. Grep

2. Enter the number of the log you wish to grep.

[]> 1

3. Enter the regular expression to grep.

[]> IP of the PC that the issue is being re produced on.

4. Do you want this search to be case insensitive? [Y]>

5. Do you want to search for non-matching lines? [N]>

6. Do you want to tail the logs? [N]> Yes

7. Do you want to paginate the output? [N]>

Once you have the grep output please paste it in this discussion.

Sincerely,

Erik Kaiser

Cisco WSA Forums Moderator

Sincerely, Erik Kaiser WSA CSE WSA Cisco Forums Moderator

Hi Erik,

Thanks. I have performed the appropriate grep as requested. Here is the output:

1342660798.284 249 10.33.170.56 TCP_MISS/200 8396 GET

http://www.linkedin.com/

"domain\username@domain" DIRECT/www.linkedin.com text/html MONITOR_CUSTOMCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-DefaultGroup - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.306 0 10.33.170.56 TCP_DENIED/407 1723 GET

http://s3.licdn.com/scds/concat/common/css?h=14ei741up8a35oqzaaqbo2zar&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.307 0 10.33.170.56 TCP_DENIED/407 1723 GET

http://s4.licdn.com/scds/concat/common/css?h=33tdivxzq9w7ezjxsor11kjw5&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.307 0 10.33.170.56 TCP_DENIED/407 1723 GET

http://s3.licdn.com/scds/concat/common/js?h=7te4p95pipb5icveef284kps-6fpgvxfmet1dgazyby9ub4rnk&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.308 1 10.33.170.56 TCP_DENIED/407 1723 GET

http://s4.licdn.com/scds/concat/common/js?h=dfoaudjrk6rbf82f45bz5crwi-62og8s54488owngg0s7escdit-c8ha6zrgpgcni7poa5ctye7il-3ufb745s29q1ovtbq6htt6rwh-51dv6schthjydhvcv6rxvospp-e9rsfv7b5gx0bk0tln31dx3sq-2r5gveucqe4lsolc3n0oljsn1-8v2hz0euzy8m1tk5d6tfrn6j...

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",13784.00,0,-,"-","-"> - -

1342660798.310 0 10.33.170.56 TCP_DENIED/407 531 GET

http://s3.licdn.com/scds/concat/common/js?h=7te4p95pipb5icveef284kps-6fpgvxfmet1dgazyby9ub4rnk&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.310 0 10.33.170.56 TCP_DENIED/407 531 GET

http://s3.licdn.com/scds/concat/common/css?h=14ei741up8a35oqzaaqbo2zar&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.310 0 10.33.170.56 TCP_DENIED/407 531 GET

http://s4.licdn.com/scds/concat/common/css?h=33tdivxzq9w7ezjxsor11kjw5&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.316 0 10.33.170.56 TCP_DENIED/407 531 GET

http://s4.licdn.com/scds/concat/common/js?h=dfoaudjrk6rbf82f45bz5crwi-62og8s54488owngg0s7escdit-c8ha6zrgpgcni7poa5ctye7il-3ufb745s29q1ovtbq6htt6rwh-51dv6schthjydhvcv6rxvospp-e9rsfv7b5gx0bk0tln31dx3sq-2r5gveucqe4lsolc3n0oljsn1-8v2hz0euzy8m1tk5d6tfrn6j...

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.317 12 10.33.170.56 TCP_DENIED/403 7483 GET

http://s3.licdn.com/scds/concat/common/css?h=3bifs78lai5i0ndyj1ew7316e-c8kkvmvykvq2ncgxoqb13d2by-4cff62fozoxsbiyfz40j584kw-c5839km74lqu75dnankln5rgt-4uu2pkz5u0jch61r2nhpyyrn8-bf0i9bv8oqeq4shjzvzhms72i-4om4nn3a2z730xs82d78xj3be-4newiqesz8x3qjgqezmhyws...

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.325 13 10.33.170.56 TCP_DENIED/403 4207 GET

http://s4.licdn.com/scds/concat/common/css?h=33tdivxzq9w7ezjxsor11kjw5&fc=1

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.336 24 10.33.170.56 TCP_DENIED/403 4207 GET

http://s3.licdn.com/scds/concat/common/css?h=14ei741up8a35oqzaaqbo2zar&fc=1

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.347 36 10.33.170.56 TCP_DENIED/403 4375 GET

http://s3.licdn.com/scds/concat/common/js?h=7te4p95pipb5icveef284kps-6fpgvxfmet1dgazyby9ub4rnk&fc=1

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.360 43 10.33.170.56 TCP_DENIED/403 9289 GET

http://s4.licdn.com/scds/concat/common/js?h=dfoaudjrk6rbf82f45bz5crwi-62og8s54488owngg0s7escdit-c8ha6zrgpgcni7poa5ctye7il-3ufb745s29q1ovtbq6htt6rwh-51dv6schthjydhvcv6rxvospp-e9rsfv7b5gx0bk0tln31dx3sq-2r5gveucqe4lsolc3n0oljsn1-8v2hz0euzy8m1tk5d6tfrn6j...

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.626 0 10.33.170.56 TCP_DENIED/403 4131 GET

http://s4.licdn.com/scds/common/u/img/tracker.gif?id=sct--174041236

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.029 0 10.33.170.56 TCP_DENIED/407 1723 GET

http://www.linkedin.com/

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.033 0 10.33.170.56 TCP_DENIED/407 531 GET

http://www.linkedin.com/

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.284 249 10.33.170.56 TCP_MISS/200 8396 GET

http://www.linkedin.com/

"domain\username@domain" DIRECT/www.linkedin.com text/html MONITOR_CUSTOMCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-DefaultGroup - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.306 0 10.33.170.56 TCP_DENIED/407 1723 GET

http://s3.licdn.com/scds/concat/common/css?h=14ei741up8a35oqzaaqbo2zar&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.307 0 10.33.170.56 TCP_DENIED/407 1723 GET

http://s4.licdn.com/scds/concat/common/css?h=33tdivxzq9w7ezjxsor11kjw5&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.307 0 10.33.170.56 TCP_DENIED/407 1723 GET

http://s3.licdn.com/scds/concat/common/js?h=7te4p95pipb5icveef284kps-6fpgvxfmet1dgazyby9ub4rnk&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.308 1 10.33.170.56 TCP_DENIED/407 1723 GET

http://s4.licdn.com/scds/concat/common/js?h=dfoaudjrk6rbf82f45bz5crwi-62og8s54488owngg0s7escdit-c8ha6zrgpgcni7poa5ctye7il-3ufb745s29q1ovtbq6htt6rwh-51dv6schthjydhvcv6rxvospp-e9rsfv7b5gx0bk0tln31dx3sq-2r5gveucqe4lsolc3n0oljsn1-8v2hz0euzy8m1tk5d6tfrn6j...

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",13784.00,0,-,"-","-"> - -

1342660798.310 0 10.33.170.56 TCP_DENIED/407 531 GET

http://s3.licdn.com/scds/concat/common/js?h=7te4p95pipb5icveef284kps-6fpgvxfmet1dgazyby9ub4rnk&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.310 0 10.33.170.56 TCP_DENIED/407 531 GET

http://s3.licdn.com/scds/concat/common/css?h=14ei741up8a35oqzaaqbo2zar&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.310 0 10.33.170.56 TCP_DENIED/407 531 GET

http://s4.licdn.com/scds/concat/common/css?h=33tdivxzq9w7ezjxsor11kjw5&fc=1

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.316 0 10.33.170.56 TCP_DENIED/407 531 GET

http://s4.licdn.com/scds/concat/common/js?h=dfoaudjrk6rbf82f45bz5crwi-62og8s54488owngg0s7escdit-c8ha6zrgpgcni7poa5ctye7il-3ufb745s29q1ovtbq6htt6rwh-51dv6schthjydhvcv6rxvospp-e9rsfv7b5gx0bk0tln31dx3sq-2r5gveucqe4lsolc3n0oljsn1-8v2hz0euzy8m1tk5d6tfrn6j...

- NONE/- - OTHER-NONE-domain_Identity-NONE-NONE-NONE-NONE <-,-,"-","-",-,-,-,"-","-",-,-,-,"-","-",-,"-","-",-,-,-,-,"-","-","-","-","-","-",0.00,0,-,"-","-"> - -

1342660798.317 12 10.33.170.56 TCP_DENIED/403 7483 GET

http://s3.licdn.com/scds/concat/common/css?h=3bifs78lai5i0ndyj1ew7316e-c8kkvmvykvq2ncgxoqb13d2by-4cff62fozoxsbiyfz40j584kw-c5839km74lqu75dnankln5rgt-4uu2pkz5u0jch61r2nhpyyrn8-bf0i9bv8oqeq4shjzvzhms72i-4om4nn3a2z730xs82d78xj3be-4newiqesz8x3qjgqezmhyws...

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.325 13 10.33.170.56 TCP_DENIED/403 4207 GET

http://s4.licdn.com/scds/concat/common/css?h=33tdivxzq9w7ezjxsor11kjw5&fc=1

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.336 24 10.33.170.56 TCP_DENIED/403 4207 GET

http://s3.licdn.com/scds/concat/common/css?h=14ei741up8a35oqzaaqbo2zar&fc=1

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.347 36 10.33.170.56 TCP_DENIED/403 4375 GET

http://s3.licdn.com/scds/concat/common/js?h=7te4p95pipb5icveef284kps-6fpgvxfmet1dgazyby9ub4rnk&fc=1

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.360 43 10.33.170.56 TCP_DENIED/403 9289 GET

http://s4.licdn.com/scds/concat/common/js?h=dfoaudjrk6rbf82f45bz5crwi-62og8s54488owngg0s7escdit-c8ha6zrgpgcni7poa5ctye7il-3ufb745s29q1ovtbq6htt6rwh-51dv6schthjydhvcv6rxvospp-e9rsfv7b5gx0bk0tln31dx3sq-2r5gveucqe4lsolc3n0oljsn1-8v2hz0euzy8m1tk5d6tfrn6j...

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

1342660798.626 0 10.33.170.56 TCP_DENIED/403 4131 GET

http://s4.licdn.com/scds/common/u/img/tracker.gif?id=sct--174041236

"domain\username@domain" NONE/- - BLOCK_WEBCAT_11-DefaultGroup-domain_Identity-NONE-NONE-NONE-NONE - "domain\INT Allow Downloads,domain\INT Allow Firefox Browser"

So looking at this, do I allow ".licdn.com"?

Hi Shaun,

Yes you would add .licdn.com & licdn.com to a custom URL category which you would then add to the Default Access Policy. Leave the action on that custom category to Monitor. This will allow linkedin to work correctly.

Sincerely,

Erik Kaiser

WSA Cisco Forums Moderator

Sincerely, Erik Kaiser WSA CSE WSA Cisco Forums Moderator

sivaprasad.gvn
Level 1
Level 1

Hello

I am also facing the same issue.

Requirement: Allow only linked in and block all social networking sites

Changes made: Added custom category for linkedin and the same allowed in access and decryption policies and blocked social networking category.

custom category sites added

[a-z|0-9].licdn.com/*

23.32.0.0/11, 23.64.0.0/14, 118.214.0.0/15

Still the linkedin site is not working properly and the same is working when i enabled the default category of social networking.

Please check and help to resolve the issue.

Thanks

Siva

Below is the grep logs.

1369819812.940 375 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369819813.579 637 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369819813.598 655 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369819828.599 70510 TCP_MISS/200 14002 TCP_CONNECT 216.52.242.80:443 "" DIRECT/216.52.242.80 - PASSTHRU_CUSTOMCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369819868.600 110511 TCP_MISS/200 11773 TCP_CONNECT 216.52.242.80:443 "" DIRECT/216.52.242.80 - PASSTHRU_CUSTOMCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820001.516 479 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820001.527 494 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820001.527 490 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820001.541 508 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820001.556 520 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820001.557 522 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820002.253 720 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820002.261 718 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820002.281 723 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820002.285 755 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820002.285 725 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820002.285 766 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.037 782 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.040 757 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.040 775 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.041 752 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.048 757 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.077 787 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.667 616 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.688 641 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.688 633 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.693 651 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.703 623 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.703 654 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.704 658 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.704 661 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820003.711 673 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820004.342 651 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820004.354 662 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820004.354 647 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820004.815 455 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820005.419 601 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820005.823 2114 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820006.011 2299 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820006.240 2532 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820006.270 445 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820006.442 2736 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820006.460 446 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820006.644 371 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820006.662 420 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820007.015 3307 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820007.025 581 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820007.316 652 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820007.667 650 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820007.719 700 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820008.387 665 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820008.490 769 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820008.492 767 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820009.356 861 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820009.405 909 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820010.235 827 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820010.276 869 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820010.906 626 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820010.941 662 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820060.942 62537 TCP_MISS/200 3749 TCP_CONNECT 216.52.242.80:443 "" DIRECT/216.52.242.80 - PASSTHRU_CUSTOMCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

1369820065.943 67538 TCP_MISS/200 11772 TCP_CONNECT 216.52.242.80:443 "" DIRECT/216.52.242.80 - PASSTHRU_CUSTOMCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

Looking at your grep add 118.215.177.244 and you should be fine.

Thanks

Chris

The ip network 118.214.0.0/15-----[118.214.0.1-118.215.255.254] already added in the custom category. But it still denied by using web cat instead of cust cat.

1369820010.941 662 TCP_DENIED/403 0 TCP_CONNECT 118.215.177.244:443 "" DIRECT/118.215.177.244 - DROP_WEBCAT_7-TOD-LtmrcorpITusers-NONE-NONE-NONE-DefaultGroup -

Regards,

Siva

Not sure then, checking our rule to allow linked in we have custom:

linkedin.com, .linkedin.com, licdn.com, .licdn.com

Thanks

Chris

Whoah for a minute - if you put 23.32.0.0/11 into the allow custom cat, you are explicitly allowing access to 2,097,152 IPs, irrespective of their contents.  /14 and /15 are marginally better - allowing 262,144 and 131,072 hosts, respectively.  I would strongly urge you to reconsider allowing such a vast swath of IP space to be granted explicit access.  

custom category sites added

[a-z|0-9].licdn.com/* - the same thing is accomplished by having .licdn.com, licdn.com in the whitelist.  The asterisk does not work as a wildcard here, as far as I know.  You can use regular expressions to restrict/allow access to certain sites following the / part of the web address, but that's not what you are trying to accomplish here.

23.32.0.0/11, 23.64.0.0/14, 118.214.0.0/15 - where did you get these IP ranges?  118.215.177.244 in a browser takes you to UPS.com, and resolves to: a118-215.177-244.deploy.akamaitechnologies.com - LinkedIn uses their own proprietary content delivery network for content.

In short, if you take Chris' advice above, and just add linkedin.com, .linkedin.com, licdn.com, .licdn.com, to your whitelist, it will should work, and make administration far, far easier for you.

Or, you could upgrade to the latest build of 7.5.1 and use Application Visiblity Controls to allow access to LinkedIn and not the other social sites...

uditbarma20
Level 1
Level 1

The IP network 118.214.0.0/15, within the range 118.214.0.1-118.215.255.254, is already included in the custom category. However, despite this, it is being denied when using web cat instead of cust cat. The log indicates a TCP_DENIED/403 error for a connection attempt to 118.215.177.244:443.

Regards, udit

amojarra
Cisco Employee
Cisco Employee

Hello @uditbarma20 

here are some points which I would like to highlight:

[1] Custom Categories are top-to down ( make sure there are no other categories above the one which are expecting to hit) 

[2] In Explicit Mode the name resolution is done from WSA but in transparent mode from Client,

[3] check the Accesslogs or Web Tracking report and:

[3-1] Make sure you are hitting correct Custome Category

[3-2] You are hitting correct Policy ( Decryption & Access )  

[4] Please be advised, if the traffic is HTTPs and the URL is set to pass through (could be due to WBRS score) then it will never hit access policy, so it is best to Block the Custom Cat in both Decryption and Access policy

 

 

Regards,

Amirhossein Mojarrad

+++++++++++++++++++++++++++++++++++++++++++++++++++

++++        If you find this answer helpful, please rate it as such      ++++

+++++++++++++++++++++++++++++++++++++++++++++++++++