Configuring Websense Security Gateway Anywhere Triton 7

47
web security | data security | email security © 2009 Websense, Inc. All rights reserved. Support Webinars Configuring Websense Security Gateway Anywhere Triton 7.5

Transcript of Configuring Websense Security Gateway Anywhere Triton 7

web security | data security | email security © 2009 Websense, Inc. All rights reserved.

Support Webinars

Configuring Websense Security Gateway

Anywhere – Triton 7.5

TOPICS COVERED

New Today page graphs

Web 2.0 reports

Running/Reviewing reports in the background

Manager Configuration and SSO ( single sign on)

WCG Scanning Options

Hybrid Configuration

WebDLP Configuration

Proxy Authentication options

– XID vs. Proxy Authentication

2

Triton Web Security Manager

Still consists of two services ( Apache2Websense and ApacheTomcatWebsense )

Presentation Reports will automatically connect based on settings in mng.xml

“Today” page graphs load off this connection

Investigative Reports has its own separate connection via ODBC

3

Web Security Today Page

4

Today Page- Customize Graphs

5

Presentation Reports

6

Real Time Security Threats

7

Scanning Activity

8

Presentation Reports

9

Adding Reports

10

Review Reports

11

Purging Settings

12

Web & Data Managers

Each manager needs to be on its own windows server as each manager runs its own Apache service.

Web Reporting uses a SQL database, that does NOT come with the install package.

Data Reporting uses a Oracle database that does come with the install package.

Via the Linking Service usernames and URL categories are shared between the two managers.

The Linking Service is part of the Web Security install package

13

Linking Web Security

14

Linking - Data Security

15

Single Sign On (SSO)

16

Delegated Administration

17

Scanning Options

18

Scanning (cont.)

19

Scanning (cont.)

20

web security | data security | email security © 2009 Websense, Inc. All rights reserved.

Hybrid Configuration

What is Hybrid?

Hybrid Configuration

23

Hybrid Scheduling

24

Hybrid Shared User Data

25

Websense Sync Service Viewer

26

URL:

– http://10.1.1.1:55832/viewer

Hybrid User Access

27

User Access Off-Site Users

28

Unfiltered Destinations

29

Filtered Locations

30

web security | data security | email security © 2009 Websense, Inc. All rights reserved.

Configuring WebDLP (Data Loss Prevention)

WebDLP

What is WebDLP?

– WebDLP is a lite version of Websense Data Security applied over “web channels”

– WebDLP allows you to keep your companies secure information inside your network

– Websense Content Gateway now has the ability to analyze outbound web content for sensitive information• HTTP/HTTPS/FTP outbound analysis

• Covers POST & PUT packets, but not GET

– 2 main components• Content Gateway

• Triton - Data Security Manager

WCG - Data Security

33

WCG - Data Security (cont.)

34

WCG - Data Security (cont.)

35

Data Security Statistics

36

web security | data security | email security © 2009 Websense, Inc. All rights reserved.

New Proxy Features

37

Websense Content Gateway 7.5

New Features and Added Functionality to WCG 7.5

– Authentication options

– DNS functionality

– Proxy Chaining

– SSL functionality

NTLM Authentication Realms

39

Transparent Authentication

40

XID vs Proxy Authentication

XID Agent

Involves an agent being

installed

Can be configured to

update on logon/logoff

Agent can be installed

only on windows OS.

MAC authentication is

only supported via Novell

eDirectory

Proxy Authentication

Runs directly off browser session, no extra install required

Does not detect exact logoff

Can authenticate any operating system

Can pick up session for terminal/citrix servers without the use of a plug-in

41

DNS Proxy

42

Split DNS

43

Proxy Chaining

44

SSL Incidents

45

SSL Bypass

46

Support Online ResourcesKnowledge Base

– Search or browse the knowledge base for documentation, downloads, top knowledge base articles, and solutions specific to your product.

Support Forums

– Share questions, offer solutions and suggestions with experienced Websense Customers regarding product Best Practices, Deployment, Installation, Configuration, and other product topics.

Tech Alerts

– Subscribe to receive product specific alerts that automatically notify you anytime Websense issues new releases, critical hot-fixes, or other technical information.

• ask.websense.com

– Create and manage support service requests using our online portal.