• Some users have recently had their accounts hijacked. It seems that the now defunct EVGA forums might have compromised your password there and seems many are using the same PW here. We would suggest you UPDATE YOUR PASSWORD and TURN ON 2FA for your account here to further secure it. None of the compromised accounts had 2FA turned on.
    Once you have enabled 2FA, your account will be updated soon to show a badge, letting other members know that you use 2FA to protect your account. This should be beneficial for everyone that uses FSFT.

Barracuda WSA

Sturm

n00b
Joined
Jul 23, 2013
Messages
29
Hello

For those who have experience with the barracuda web filter.

We are currently looking to use the WSA (web security agent) to monitor our internal web traffic. In the Admin guide, they suggest that you use the external hostname of your barracuda web filter to forward all traffic of your users that have the WSA installed to your web filter. What we want to achieve is that only if the users are connected to our internal network the traffic is redirected. And not if they (for example) use their laptop at their home network.

If there is someone who can help me? Or does know if this is possible, please answer my question, it would be greatly appreciated
 
I am not at my work laptop so I cannot recall the exact option (we use the 410 model) but under the advanced tab, there is a section for the remote agent. One of the options (i am recalling the last one) gives the option to either have the agent forward all traffic through the barracuda (it is acting as a proxy) or have it set so the WSA is only polling for policy updates which means the rules are enforced but your web traffic is using your isp gateway rather than being routed through the barracuda.

I hope that makes sense.
 
Thanks zerodamage for the reply.

So If I'm interpreting it correctly, if I use the 2nd option ( WSA only polling for policy updates), will it monitor the traffic when the users are able to contact the webfilter? And if they can't reach the webfilter, they can't see any messages (the users are not aware of the WSA running).
 
Alright, I've opened a case at Barracuda and it seems that the WSA can operate in failopen mode. This way it does exactly what I need.

Thanks so far for the response.
 
Alright, I've opened a case at Barracuda and it seems that the WSA can operate in failopen mode. This way it does exactly what I need.

Thanks so far for the response.

Fail Open means that it will let all traffic through regardless of the policies. So you will want to make sure that your Barracuda is accessible from behind your firewall if you plan on having users surfing the web outside of the office.

The "WSA only polling for policy updates" setting means it only gets policy updates and enforces them. No traffic is being proxied.

There is an option to hide the agent's taskbar icon, otherwise it is visible.
 
Back
Top