Friday, January 11, 2008

Additional info on proxies behaving badly.

I have worked with two organizations now that are using websense in conjunction with a pix firewall and aaa auth. If your organization is configured in such a scenario it is imperative that you specify the virtual http parameter as your users browsers might cache auth and leak it to external websites.

http://www.cisco.com/warp/public/110/atp52.html#virtual_http

0 comments: