Quantcast
Channel: Forcepoint Community
Viewing all 2011 articles
Browse latest View live

Add external ip address as a service name

$
0
0

We have many users how use external trading services such as Bloomberg and reuters.

Websense present those as IP address rather then a names. is there i way to add a list of IP address and there names so when we run reports we can separate those services from being presented as actual internet browsing time.

 

I.E

 

10.212.314.109 = Bloomberg

 


Youtube Upload problem

$
0
0

i have a specific user who needs to upload videos to youtube

when the do this with websense proxy set, they get errors like "upoad aborted" or network error"

even when given the "unrestricted" policy the problem is the same.

in the extended.log i see a entry with youtube and a 407 error ( with the computers IP and not username)

how can this be fixed

Present external IP address as names

$
0
0

We have many users how use external trading services such as Bloomberg and reuters.

Websense present those as IP address rather then a names. is there i way to add a list of IP address and there names so when we run reports we can separate those services from being presented as actual internet browsing time.

 

I.E

 

10.212.314.109 = Blomberg

 

Websense Endpoint Client 7.8.1911

$
0
0

On or after 8/15/2014, several government web sites are not accessible.  Endpoint Client v7.8.1911 displays 'Cannot Connect'.

On a workstation without Endpoint Client, all government web sites are accessible.

What are the implications of Gateway Security Manager being a different version than other components.

$
0
0

While walking through my company's Websense configuration,  I noticed that Gateway Server Manager is at a different release level than all the other installed components.  That is, the Deployment  page shows all components at 7.8.2, except for Gateway Server Manager which it shows at 7.7.3.

Is the information on the Deployment page accurate?

If so, is this a significant issue?

If we were to plan an upgrade to resolve this issue, what upgrade package do I need to look for on the Support Portal?

Thanks,

EdG

Blocking the E-mails which have domain names as their Display Name

$
0
0

One of my customers is having a problem with blocking some e-mails. Basically they want to block the e-mails which have domain names as their display names.
Let's say that the domain is "test.com.tr". And my customer wants to block the e-mails which is coming from "ANY" domain but has "xxx@test.com.tr" as their display name.

I've learned that it can be done only with Hybrid but it's a problem for the customers who don't want to send their e-mails to the Cloud. So we need to make it on the ESG.

Change filter priority in 7.8

$
0
0

I need to move the IP network filter down in order of precedence so that its more restrictive filter is not applied to valid domain user accounts.  I know that this was possible in version 7.7 and earlier by editing the eimserver.ini file with the tag UserGroupIpPrecedence=true, however I can only find a backup of that file in version 7.8.  What am I missing?

Description/Notes field on Clients

$
0
0

Id love to see a free text field on the Clients configuration screen so you could better document what the IP or IP range being explicitly assigned to a policy is.


Multiple url-server with two networks, one ASA

$
0
0

Hello:

We have a Cisco ASA which has two separate and isolated networks that use it.  We also have two separate Websense Filtering servers.  We would like each of the networks to use their own filtering server, if it is possible.  I've read on specifying multiple "url-server" statements in the ASA, but so far I'm not seeing a way to have each network use its own filtering server.

Can this be done?

Thank you very much in advance.

Category Rules: Personal network storage and backup

$
0
0

We have a request to filter different actions for Personal Network Storage and Backup sites (eg. dropbox/box/etc.). The request is to enable selective blocking on upload and download action - to provide control on which users can upload or download from different sites controlled by external parties. This is similar to the granularity already provided for Social Media sites.

Websense 7 Manager Timeout

$
0
0

Hi,

I was wondering if there was a way to change the default timeout of 30 minutes to something more reasonable? 30 minutes is rediculous. It also times out the Investigative Reports when open in a new window causing me to lose what I had on the screen.

At least in Websense 6 you could change the timeout to something more reasonable.

Thank you,

Steve

Feature Request - Add file permissions to export of discovery incidents

$
0
0

We would like to see the file permissions available in the csv export of discovery items. This would help to know who has access to those file while doing remediation.

Custom Reporting Options

$
0
0

It would be quite awesome if you could create custom reports with more than two "drill downs".

 

For example...I would love to be able to create a report that shows all Bot related activity for X Date and have it sorted by user-->category-->URL and all the detailed info that goes with it. 

 

I have only been using Websense for a short time but the reporting in Triton is quite lacking.

 

Andrew

I HAVE A NEED/DESIRE TO FILTER COMPUTER NAME NOT THE IP ADDRESS

$
0
0

I HAVE A NEED/DESIRE TO FILTER COMPUTER NAME NOT THE IP ADDRESS

Thank you

Content Gateway 'non-matching policy server at x.x.x.x:55806'

$
0
0

I just install the Content Gateway v7.8.3 on Centos 6.5. Everything install as planned, but it will not connect to our Policy Server. Our policy and filtering service are both on the same machine. Firewalls are both off, SELINUX is disabled. Nothing that I change changes the outcome. I started checking the logs and this is what I keep getting:

 

 

Error: Code=0x41910008 ModuleId=0x12c Location=WsWiffleLocator.cpp:189

UID Broadcast was attempted but received no Policy Server responses.

WTGApp: failed to connect to Policy Server: 

UID Broadcast was attempted but received no Policy Server responses.

Attempting to broadcast for PolicyServer () ...

Found non-matching Policy Server at 192.168.75.185:55806

Attempting to broadcast for PolicyServer () ...

Found non-matching Policy Server at 192.168.75.185:55806PolicyServer () ...

Found non-matching Policy Server at 192.168.75.185:55806ing: (192.168.75.185:55806) (192.168.75.249:55806) 

Attempting to broadcast for PolicyServer () ...

Found non-matching Policy Server at 192.168.75.185:5580649:55806Server at 192.168.75.185:55806y Server at 192.168.75.185:55806

What am I doing wrong?


A10 SSL Intercept

$
0
0

 

In order to provide better filtering with Triton and other products used in house for protection my firm is looking at an appliance A10 SSL Intercept.  This appliance will receive port 443 traffic, decrypt and forward to Triton on port 8080. We are a 7.5 standalone version. Is this possible and has anyone done this before?  If so can I be pointed to the appropriate documentation to prepare for this? 

Thanks

Websense rollup logs 2-3X's larger since upgrade from 7.7 to 7.8.2 ???

$
0
0

Hi everyone,

I updated our WS from 7.7 to 7.8.2 several months ago and have noticed the rollup logs are almost 3 x's larger than they were before the upgrade.  This has caused us multiple issues.  I have a ticket open with support, but I figure you all might be experiencing the same issue un-noticed.   I would appreciate any and all feedback if anyone else has noticed this issue.

login to Triton, Settings, Reporting, Log Database, Available Partitions- Content Size.

Thanks.

Ability to set the company's internet connection bandwidth per content gateway

$
0
0

General->Filtering:

Internet connection speed

Specify your organization's Internet connection speed.

This is not useful for us seeing we manage 4 locations with 1 Triton Windows machine.

These locations all have a different connection.

Website loading very slow

$
0
0

We are currently having trouble loading www.telegraaf.nl/dft

Sometimes it loads fine, but most of the time some part of it takes 60 seconds to download (pictures, css).

How is it loading on your setup?

Thanks!

Cloud Web Security Gateway routing issue when on FortiClient VPN

$
0
0

All our laptops are installed with Websense Endpoint Client which ensures all HTTP/HTTPS traffic is routed to Websense Cloud service whether on corporate LAN, public WiFi or home broadband.

However, we are experiencing issue with Websense routing when after connecting to an SSL VPN using FortiClient to a Fortigate firewall. In certain scenarios, the web browser traffic tries to connect directly to the internet, rather than to Websense servers. See details below

- We traffic does proxy correctly on the internal LAN and it does proxy correctly when on an external network e.g. home broadband

- it does proxy correctly correctly when connecting via the VPN WHEN THE BROWSER IS OPENED BEFORE MAKING THE VPN CONNECTION.

- it does NOT proxy if I make the VPN connection‎ first and then open the browser to access the internet. In this scenario, using TCPView, ‎I can see the browser trying to connect directly to websites which I do not want. I still need this proxy in via Websense as with all other scenarios.

The fact Websense traffic routes to Websense via the VPN in 1 scenario suggests the traffic is allowed across the VPN and out the corporate firewall unhindered.

I just can’t work out what is different in connecting the web browser first and what is causing the web browser to try and connect to the internet directly… Incidentally, when I manually download the PAC file in this situation, it downloads fine. Wireshark doesn't show much as soon as the VPN is connected due to encryption I assume.

Any thoughts?

 

Viewing all 2011 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>