This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Does ATP work if XG only used as an internet proxy?

Hi all. Former WSA user that is now on XG for internet proxy usage. I know some XG features such as Security Heartbeat and Synchronized Application Control don't work unless the XG is the default gateway for the network, but what about ATP? No point in it logging traffic if it's not doing anything.

 

Thanks!



This thread was automatically locked due to age.
Parents
  • Synchronized Security Features work without Default Gateway.

    Simply redirect the "Heartbeat Magic IP" to XG, and XG will build up the communication Channel between all clients. 

    The Client will try to reach: 52.5.76.173 and port 8347. Thats the Magic IP. 

    If XG is not the Gateway, simply redirect this IP with this Port to XG. 

     

    ATP Should work in such Scenario. But why should there be Drops in ATP? Did you actually use something in ATP? 

    __________________________________________________________________________________________________________________

  • At the end of a four support call to try and get synchronized security features working between the XG and Central, a developer was brought onto the call and the first words out of his mouth were "It doesn't work if the XG isn't the default gateway."

    You're saying I should put a NAT rule on my external firewall to redirect 52.5.76.173:8347 back to the XG? Is that going to affect my clients' heartbeat to Central?

     

    >"ATP Should work in such Scenario. But why should there be Drops in ATP? Did you actually use something in ATP? "

    Don't follow. I'm not seeing anything ATP related

  • Lets wrap up:

     

    Endpoint talks to a XG Firewall via 52.5.76.173:8347. 

    The Endpoint can only talk to one XG at the time. 

    XG will intercept this connection. 

    So if you have another XG as Gateway, this will not work, but if the XG (as Web proxy) is your only XG, this should work. 

    __________________________________________________________________________________________________________________

Reply
  • Lets wrap up:

     

    Endpoint talks to a XG Firewall via 52.5.76.173:8347. 

    The Endpoint can only talk to one XG at the time. 

    XG will intercept this connection. 

    So if you have another XG as Gateway, this will not work, but if the XG (as Web proxy) is your only XG, this should work. 

    __________________________________________________________________________________________________________________

Children