Detect Protocol needs to be disabled in Edge SWG (ProxySG) or Advanced Secure Gateway or Cloud SWG (WSS) in UPE Mode
search cancel

Detect Protocol needs to be disabled in Edge SWG (ProxySG) or Advanced Secure Gateway or Cloud SWG (WSS) in UPE Mode

book

Article ID: 170608

calendar_today

Updated On:

Products

Cloud Secure Web Gateway - Cloud SWG Advanced Secure Gateway Software - ASG ProxySG Software - SGOS

Issue/Introduction

You need to disable Detect Protocol in the Visual Policy Manager (VPM) for Edge SWG (ProxySG) or Cloud SWG (formerly known as WSS) in Universal Policy Enforcement (UPE) Mode.

You may need to complete this action if a Symantec Support has advised you to do so.

Environment

  • Advanced Secure Gateway 
  • Edge SWG (ProxySG) 
  • Cloud SWG (WSS) (only in UPE Mode)
  • Management Center

 

Resolution

Please do the following in VPM

  1. Create a Web Access layer (or under existing Web Access layer)
  2. Create new rule (Click "Add Rule")
  3. Select a Source and Destination of choice
  4. Under Action: Set > New > Disable SSL Detection > All Tunneled Traffic

For Cloud SWG (UPE tenant), above policy can be implemented in Management Center Universal VPM policy. 

Also see: Why doesn't a detect_protocol(no) rule work for some sites or applications when applied in the VPM?