cancel
Showing results for 
Search instead for 
Did you mean: 
Highlighted

MWG Hybrid and MCP

I'm currently trying to figure out my best option configuring web filtering for users that work both on the corp network and off site. I'm currently using On-premise: MWG (7.6.2.5.0) and SaaS Web Protection. Currently, there is a GPO enabling proxy settings where we use a pac file to ALL users. The situation is that when the mobile user receives the proxy setting, they are unable to browse when the are off site. And if the proxy settings are remove they are not able to browse on premise. I'm looking for a solution to have this working .
1 Reply
McAfee Employee aloksard
McAfee Employee
Report Inappropriate Content
Message 2 of 2

Re: MWG Hybrid and MCP

Hi,

Hope you are doing well.

Firstly MWG version 7.6.2.5.0  is an EOL version. I suggest you perform MWG upgrade to an supported version.

PAC file provides Proxy fail-over support.

The PAC file can include code that handles proxy load distribution and failover.

https://community.cisco.com/t5/web-security/failover-using-the-pac-file/td-p/2299767

https://findproxyforurl.com/why-pacwpad/

https://www.websense.com/content/support/library/web/v76/pac_file_best_practices/pac_file_best_pract...

 

In the PAC file you can add your cloud FQDN and port 8080.

 

Example:- c123.saasprotection.com ( You need to change it with your customer ID)

 

First proxy should be your on prem MWG and second be your cloud FQDN.  When user is off net reach ability  to on prem MWG will not be their and failover should happen to cloud proxy.

You can try above and see if that helps.

 

Also in some time support for MCP mobile will be available.

 

Regards

Alok Sarda

More McAfee Tools to Help You
  • Subscription Service Notification (SNS)
  • How-to: Endpoint Removal Tool
  • Support: Endpoint Security
  • eSupport: Policy Orchestrator