When these websites are accessed via a ProxySG appliance transparently, the ports are not set to intercept transparent connections by default. As a result, the requests are bypassed by the proxy and an upstream device (firewall) blocks access from the client’s IP.
Intercept these custom ports by using the appropriate service type. For the previous example URLs, which are HTTP, the service type should be “http”.
In the Management Console, select Configuration > Services > Proxy Services.
Click External HTTP > Edit Service.
Under Listeners, click New. Set the Listener with settings for intercepting port 8080, specified in the example at the end of this procedure .
Click OK to go back to Edit Service page. You can click New and add more ports if required.
Click OK and Apply the changes.
These steps ensure that the appliance is intercepting those ports also with respective proxy service (in this case it is “HTTP”). You must also open the firewall or any upstream devices to allow the appliance's IP address to communicate on the respective ports.
Note: If you are using WCCP for redirecting the connections, also add the ports to the WCCP service group so that the WCCP server passes them to the appliance.
Imported Document ID: 000022150
Subscribing will provide email updates when this Article is updated. Login is required.