
7
Blue Coat ProxySGs are the industry’s only solutions designed specifically for securing, accelerating and scaling SSL traffic to
internal as well as external sites over your LAN and WAN. Three solutions are discussed:
Secured and Accelerated Outbound SSL Traffic – Forward Prox>- y
WAN Optimization – MACH5 SSL Prox>- y
Web Server Acceleration – HTTPS Reverse Prox>- y
Secured and Accelerated Outbound SSL Traffic – Forward Proxy
Many organizations today have a need to protect their users and their corporate assets. An SSL forward proxy can help
an organization protect their end-users from downloading and installing threats from the Internet, as well as help protect
corporate assets by preventing confidential and proprietary information from making its way to the Internet (data loss
prevention). Figure 6, below, illustrates the Blue Coat ProxySG SSL forward proxy solution.
Internet
SSLSSL
Web Applications
Corporate Headquarters
Forward SSL Proxy
• Malware Prevention
• Data Leakage Prevention
• Outsourced Application
Security and Acceleration
Figure 6 – Blue Coat ProxySG Forward SSL Solution
The SSL proxy can intercept HTTPS traffic allowing organizations to apply various security policies to prevent malware infection
and still allow access to secured, external SSL sites. The SSL Forward proxy can do the following operations while tunneling
HTTPS traffic:
Validate server certificates, including CA checking and revocation checks using Certificate Revocation Lists (CRLs).>-
Check and optionally enforce various SSL parameters such as cipher and version.>-
Log useful information about the HTTPS connection.>-
URL filter based on the server certificate hostname.>-
Technology Primer: Secure Sockets Layer (SSL)
Comentários a estes Manuais