![McAfee MAP-3300-SWG - Web Security Appliance 3300 Product Manual Download Page 164](http://html1.mh-extra.com/html/mcafee/map-3300-swg-web-security-appliance-3300/map-3300-swg-web-security-appliance-3300_product-manual_1753167164.webp)
• Basic HTTP settings
• User Authentication
• Timeouts
Basic HTTP settings
Table 142 Option Definitions
Option
Definition
Enable the HTTP
protocol
Normally, this option is selected.
HTTP ports
Specifies the ports that the appliance will scan for threats when in Explicit Proxy
mode. Typical ports are 80 for listening, and port 443 for secure web access using
HTTPS.
Do not add secure ports such as 443 as listening ports.
If an appliance is operating in a transparent mode, you can exclude some parts of
the network from scanning traffic in a protocol, either all the time or for some
periods during the day. The most secure option is to scan all traffic. Before turning
off scanning of any traffic, consider the security risks.
Click these icons and the port headings to reveal icons for managing the port
information:
Enable reverse DNS
lookups
If this option is not set, web access is faster but:
• HTTPS URL filtering cannot work because the URLs are recorded by name, such as
www.example.com, not as IP addresses.
• The logs are less informative because they contain only IP addresses such as
192.168.200.254, not names such as www.example.com.
User Authentication
Use this section to enable user authentication for this policy. By default, authentication is disabled.
To set up authentication services, select
System
|
Users, Groups and Services
|
Web User Authentication
on the
navigation bar.
Table 143 Option Definitions
Option
Definition
Authentication group
Select an authentication group from the list of all available authentication
groups configured globally. The list is disabled if authentication is off. The
selected authentication group defines which authentication service is used.
Authentication can be configured to try more than one authentication service in
a defined order.
Protocol preset
Allows you to make settings for any exception to the default setting. For
example, you can require that some parts of the network use different devices
for their authentication.
Advanced settings
You do not normally need to change the following settings.
Request Verbs
Request verbs are acted on to start the authentication redirect process. This is
normally set to GET.
Overview of Web features
Web Configuration
164
McAfee Email and Web Security Appliances 5.6.0 Product Guide
Summary of Contents for MAP-3300-SWG - Web Security Appliance 3300
Page 1: ...Product Guide McAfee Email and Web Security Appliances 5 6 0 ...
Page 6: ......
Page 20: ......
Page 28: ......
Page 58: ......
Page 206: ......
Page 310: ......
Page 322: ......
Page 324: ......
Page 326: ......
Page 333: ......
Page 334: ......
Page 335: ......
Page 336: ...700 2647A00 00 ...