ProxySG & Advanced Secure Gateway

 View Only
  • 1.  Server response code

    Posted Jul 03, 2018 05:09 AM

    Hi,

     

    We have forced deny one rule but in policy Trace we can see server code 0. Instead of 403. Any idea why it is showing like that.

     

     DNS lookup was unrestricted
    User-Agent: Mozilla/5.0 (Windows NT 6.3; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.99 Safari/537.36
    user: name="INDIA\480849" realm=auth1
    authentication status='none' authorization status='none'
    DENIED: Either 'force_deny' or 'force_exception' was matched in policy
      url.category: OpenDNS_Cryptomining@Policy;Technology/Internet@Blue Coat
        total categorization time: 0
        static categorization time: 0
    server.response.code: 0
    client.response.code: 200
    application.name: none
    application.operation: none
    application.group: none
    DSCP client outbound: 65
    DSCP server outbound: 65



  • 2.  RE: Server response code
    Best Answer

    Posted Jul 03, 2018 05:14 AM

    Hi Aboo,

     

                    Server response code will show up as "0" if the proxy is

     

    1. Not attempting a connection to server
    2. Not getting any response from server
    3. SSL Connection where proxy is not intercepting to see what the server responds

     

                    In your case, the Force_Deny is instructing the proxy to not attempt a connection to the server. Due to this, there is no knowledge of what the server will respond with. Hence set this as "0"