Blue Coat SGOS 4.x Upgrade Guide

Endpoint Mapper and SOCKS Compression

The Endpoint Mapper proxy accelerates Microsoft RPC traffic between branch and main offices, automatically creating TCP tunnels to ports where RPC services are running. The Endpoint Mapper proxy can be used in both explicit and transparent mode.

Using SOCKS compression for TCP/IP tunnels reduces bandwidth consumption and improves latency.

No configuration is required on the main office ProxySG to support SOCKS compression. However, configuration is required on the branch ProxySG to forward data through the SOCKS gateway. You can use policy or the socks-gatewayCLI options to enable SOCKS compression globally. Using policy, you can enable or disable compression on a per-connection basis on either the client side or the server side.

You must also configure the branch ProxySG for the Endpoint Mapper proxy.

Upgrade/Downgrade Behavior

On new or upgraded systems, compression on the SOCKS proxy is enabled by default. SOCKS compression is disabled by default on the SOCKS forwarding host.

On new or upgraded systems, the Endpoint Mapper proxy service is created, but not enabled, on port 135.

If you downgrade the main office ProxySG but not the branch ProxySG, the branch office might still attempt compression, but compression will fail.

On an upgraded system, the SOCKS proxy settings and policy is unchanged from the downgraded version.

Documentation References

Chapter 5, “Managing Port Services,” in the Blue Coat ProxySG Configuration and Management Guide

Chapter 6, “Configuring Proxies,” in the Blue Coat ProxySG Configuration and Management Guide

ICAP Patience Page

Patience pages display regardless of any pop-up blocking policy that is in effect.

CLI Changes and Additions

The following CLI commands have been modified:

Table 3.4: Changed CLI Syntax

Abandoned Syntax

Current Syntax

 

 

 

 

inline http icap-patience-details eof

inline http

icap-patience details eof

inline http icap-patience-header eof

inline http

icap-patience header eof

inline http

icap-patience-help eof

inline

http

icap-patience help eof

inline http

icap-patience-summary eof

inline

http

icap-patience summary eof

New commands created to view Patience Page settings are:

20

Page 20
Image 20
Blue Coat Systems SGOS 4.x manual Endpoint Mapper and Socks Compression, Icap Patience, Upgrade/Downgrade Behavior

SGOS 4.x specifications

Blue Coat Systems SGOS 4.x is a robust operating system designed for the Blue Coat ProxySG series of appliances, which serve as content filtering and web security solutions. The SGOS (Secure Gateway Operating System) is crafted to enhance network performance while providing extensive security and policy enforcement capabilities. This article delves into the numerous features, technologies, and characteristics that define SGOS 4.x, making it an essential tool for organizations looking to fortify their web traffic management and security.

One of the standout features of SGOS 4.x is its advanced web filtering capabilities. The system employs a comprehensive URL categorization database that allows organizations to enforce content policies effectively. By categorizing millions of web pages, SGOS enables users to block or allow access to specific sites based on their content category, ensuring a safe browsing experience for employees and preventing access to harmful or non-work-related content.

Another notable technological characteristic of SGOS 4.x is its accelerated SSL decryption. As encrypted traffic continues to dominate the web, it becomes increasingly important for organizations to inspect this traffic for potential threats. SGOS 4.x offers robust SSL decryption capabilities that allow organizations to analyze encrypted traffic while maintaining the confidentiality and integrity of the data being transmitted. This attribute not only strengthens security but also aids in compliance with regulatory requirements.

SGOS 4.x is also equipped with exceptional caching and content delivery features. By caching frequently accessed content, the system reduces load times and optimizes bandwidth usage. This caching mechanism is enhanced by predefined policies that dictate how content is stored and retrieved, significantly improving user experience while reducing operational costs.

Furthermore, SGOS 4.x supports advanced reporting and analytics features. The integrated reporting tools provide administrators with insights into web usage patterns, bandwidth consumption, and security incidents. These insights facilitate informed decision-making and allow organizations to refine their web usage policies based on actual user behavior and threat landscape analysis.

In terms of scalability, SGOS 4.x is engineered to support a wide range of deployment scenarios, from small businesses to large enterprises. The architecture is designed to efficiently handle varying volumes of traffic without compromising performance or security, making it a flexible solution for diverse organizational needs.

Overall, Blue Coat Systems SGOS 4.x presents a powerful platform for web security and traffic management. With its advanced filtering, SSL decryption, caching, and analytics capabilities, SGOS 4.x remains a vital solution for organizations aiming to enhance their security posture and improve operational efficiency in an increasingly complex web environment.