    Skip host from autentication rule set


      I need to connect from the internal network to Internet , a web services IMED, through the web gateway 7 in brige transparent mode.

      The requirement for are (Port 80 without content filters) (Autentia Services) (port 80 unfiltered content) (Reports) (Ports 10241 to 10249 without content filters) (electronic voucher) (Ports 10241 al10249 unfiltered content) (load balancer address) (Port 7003 without content filters) (business cards) (port 80 unfiltered content) (IMED service monitor) (Ports 10540 unfiltered content) (Test Environment)


      I tried to create a rule set tu bypass the request but didn't work with url.host, url.destinationip only worked when create a criteria by client.ip for a one  internal ipaddress, i can't do this with a destination ip.

      We need not use authentication for IMED services.


      thanks for any help



        Re: Skip host from autentication rule set

          You would have to have a stop rule before your Authentication rule.


          Something along the lines of:


          If Client.IP is in list YOUR LIST (I find lists work better in these situations)


          Stop Cycle


          If you still want it to be filtered through the AV, that can be accomplished. Let me know, I'll give you a more detailed example.


          Re: Skip host from autentication rule set

            thanks ittech


            We need filter with destination ip, is not an option filter with Client ip.


            We need that this ipaddress pass directly to internet without authentication and proxy.


            The trafic is not http. Could you show me any example to do that?



            Re: Skip host from autentication rule set
              Jon Scholten

              Same as above but...


              If URL.Destination.IP is in list YOUR LIST (I find lists work better in these situations)


              Stop Cycle


              I have reservations for this working, as the traffic is not HTTP though..




              Re: Skip host from autentication rule set

                Okay, first things first. Sorry if I misread your post.


                Now, I'm wondering why your URL.Dest.Ip rule didn't work.


                Shouldn't the MWG7 only filter port 80 and 443, assuming your only filtering HTTP and HTTPS?


                Like this


                Re: Skip host from autentication rule set



                  in this transparent bridge mode all packets which come from a client and have a destination port of 80 or 443 are intercepted by Web Gateway and sent into the proxy port 9090 for inspection. All other packets (which do have a different destination port) will simply be passed from A to B.




                  Re: Skip host from autentication rule set


                    The problem was a bad packet format:


                    I defined the in the Bypass request and works fine