Blue Coat Systems SGOS 4.x manual Endpoint Mapper and Socks Compression, Icap Patience

Page 20

Blue Coat SGOS 4.x Upgrade Guide

Endpoint Mapper and SOCKS Compression

The Endpoint Mapper proxy accelerates Microsoft RPC traffic between branch and main offices, automatically creating TCP tunnels to ports where RPC services are running. The Endpoint Mapper proxy can be used in both explicit and transparent mode.

Using SOCKS compression for TCP/IP tunnels reduces bandwidth consumption and improves latency.

No configuration is required on the main office ProxySG to support SOCKS compression. However, configuration is required on the branch ProxySG to forward data through the SOCKS gateway. You can use policy or the socks-gatewayCLI options to enable SOCKS compression globally. Using policy, you can enable or disable compression on a per-connection basis on either the client side or the server side.

You must also configure the branch ProxySG for the Endpoint Mapper proxy.

Upgrade/Downgrade Behavior

On new or upgraded systems, compression on the SOCKS proxy is enabled by default. SOCKS compression is disabled by default on the SOCKS forwarding host.

On new or upgraded systems, the Endpoint Mapper proxy service is created, but not enabled, on port 135.

If you downgrade the main office ProxySG but not the branch ProxySG, the branch office might still attempt compression, but compression will fail.

On an upgraded system, the SOCKS proxy settings and policy is unchanged from the downgraded version.

Documentation References

Chapter 5, “Managing Port Services,” in the Blue Coat ProxySG Configuration and Management Guide

Chapter 6, “Configuring Proxies,” in the Blue Coat ProxySG Configuration and Management Guide

ICAP Patience Page

Patience pages display regardless of any pop-up blocking policy that is in effect.

CLI Changes and Additions

The following CLI commands have been modified:

Table 3.4: Changed CLI Syntax

Abandoned Syntax

Current Syntax

 

 

 

 

inline http icap-patience-details eof

inline http

icap-patience details eof

inline http icap-patience-header eof

inline http

icap-patience header eof

inline http

icap-patience-help eof

inline

http

icap-patience help eof

inline http

icap-patience-summary eof

inline

http

icap-patience summary eof

New commands created to view Patience Page settings are:

20

Image 20
Contents Blue Coat Systems ProxySG Contact Information Contents Blue Coat Sgos 4.x Upgrade Guide Changes Between Sgos 3.x and Sgos About the Document OrganizationRelated Blue Coat Documentation Chapter Title DescriptionDocument Conventions Conventions DefinitionUpgrade Behavior, General UpgradingSummary of Changes to the Upgrade Process Restoring to Previous VersionsRedoing an Upgrade from Sgos Redoing an Upgrade from Sgos 2.x or CacheOSType Component Description Changing Between Sgos 4.x VersionsLicensing SSL Hardware Supported Documentation ReferencesFeature-Specific Upgrade Behavior Access LoggingGlobal Enable/Disable Switch New CLI CommandsDocument References Protocol LogNew Access Logging Substitutions Upgrade BehaviorCLI Compatibility Issues Peer-to-PeerBlue Coat Sgos 4.x Upgrade Guide New Substitutions Bandwidth Management AuthenticationAdministrator Actions Compression Downgrade BehaviorContent Filtering CLI CommandsCommand Description CPU MonitoringUpgrade/Downgrade Behavior Endpoint Mapper and Socks CompressionIcap Patience CLI Changes and AdditionsPolicy Policy Deprecation Https//ProxySGIPport /policyimportlisting.htmlAbandoned Syntax Replacement Syntax CPLBlue Coat Sgos 4.x Upgrade Guide Abandoned Policy Conditions Abandoned CPL Current CPL Abandoned CPL Current CPL Abandoned CPL Current CPL Exception Pages UTF-8 Encoding Object NamingSecuring the Serial Port SmartFilter VersionSSL Key Management Documentation ReferenceDocumentation References Blue Coat Sgos 4.x Upgrade Guide Index VPM

SGOS 4.x specifications

Blue Coat Systems SGOS 4.x is a robust operating system designed for the Blue Coat ProxySG series of appliances, which serve as content filtering and web security solutions. The SGOS (Secure Gateway Operating System) is crafted to enhance network performance while providing extensive security and policy enforcement capabilities. This article delves into the numerous features, technologies, and characteristics that define SGOS 4.x, making it an essential tool for organizations looking to fortify their web traffic management and security.

One of the standout features of SGOS 4.x is its advanced web filtering capabilities. The system employs a comprehensive URL categorization database that allows organizations to enforce content policies effectively. By categorizing millions of web pages, SGOS enables users to block or allow access to specific sites based on their content category, ensuring a safe browsing experience for employees and preventing access to harmful or non-work-related content.

Another notable technological characteristic of SGOS 4.x is its accelerated SSL decryption. As encrypted traffic continues to dominate the web, it becomes increasingly important for organizations to inspect this traffic for potential threats. SGOS 4.x offers robust SSL decryption capabilities that allow organizations to analyze encrypted traffic while maintaining the confidentiality and integrity of the data being transmitted. This attribute not only strengthens security but also aids in compliance with regulatory requirements.

SGOS 4.x is also equipped with exceptional caching and content delivery features. By caching frequently accessed content, the system reduces load times and optimizes bandwidth usage. This caching mechanism is enhanced by predefined policies that dictate how content is stored and retrieved, significantly improving user experience while reducing operational costs.

Furthermore, SGOS 4.x supports advanced reporting and analytics features. The integrated reporting tools provide administrators with insights into web usage patterns, bandwidth consumption, and security incidents. These insights facilitate informed decision-making and allow organizations to refine their web usage policies based on actual user behavior and threat landscape analysis.

In terms of scalability, SGOS 4.x is engineered to support a wide range of deployment scenarios, from small businesses to large enterprises. The architecture is designed to efficiently handle varying volumes of traffic without compromising performance or security, making it a flexible solution for diverse organizational needs.

Overall, Blue Coat Systems SGOS 4.x presents a powerful platform for web security and traffic management. With its advanced filtering, SSL decryption, caching, and analytics capabilities, SGOS 4.x remains a vital solution for organizations aiming to enhance their security posture and improve operational efficiency in an increasingly complex web environment.