If you are proxying to an appliance on the LAN, then yes. You can setup the destination proxy server to the on-premises appliance's internal FQDN or IP. If it cannot be reached while you are off network, it won't redirect.
If you are proxying to SaaS from the LAN, then it's harder. You have to pick an IP address you can connect to on the internet, but you would block at your firewall to make it think you are on the LAN.
Set the setting to the MCP policy to check for 188.8.131.52.
If you are using ePO for MCP:
If you are using the SaaS console:
And on your firewall, block the destination of 184.108.40.206:80
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.
Community Help Hub
New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.