Unauthenticated user is displayed on blocked webpage

book

Article ID: 170956

calendar_today

Updated On:

Products

Web Security Service - WSS

Issue/Introduction

Auth connector is showing green in the portal and the Auth connector service (Symantec WSS authentication service) is running in the doming controller, unauthenticated users are displayed on blocked pages when clicking on more. 

 

Cause

There is no outbound firewall rule to allow the Auth connector server access to the authentication IP address ranges for the connected data center

Environment

IPSec tunnel is the access method to the Web Security Service (WSS)

Resolution

Auth Connector must talk to authentication IP addresses in each data center. Datacenter Authentication IP ranges must be excluded from the IPsec tunnel and allowed in the firewall outbound access rule.
 
All of the authentication IP address ranges can be found here.