search cancel

SpanVA is not connecting

book

Article ID: 174409

calendar_today

Updated On:

Products

CASB Audit CASB Gateway Advanced

Issue/Introduction

SpanVA is Disconnected and will not upload proxy logs to CloudSOC.

Resolution

Generate a Diagnostic Report from the Diagnostic Report tab in SpanVA and resolve any errors. Diagnostic report may not report a problem depending on the connectivity issue.

 

Verify the proxy configuration includes the port detail in the SpanVA using the format: http://DNS_or_IP_of_Proxy:8080

If authentication is required, include the user and password: http://proxy_user:[email protected]_or_IP_of_Proxy:8080

Verify the proxy certificate imported into SpanVA is valid.

Verify the Proxy and firewall has whitelisted the DNS and or IP address *.storage.googleapis.com at port 443

Google Cloud Storage (GCS) IP addresses consist of many blocks. GCS uses the same netblocks as all other Google APIs and services. These netblocks change periodically. There are no simple fixed static network blocks from Google. Google provides the following recommendations in determining its service IP address blocks for a customer’s firewall rule use.

  • Use the complete list of IP ranges that Google publishes to the internet in a JSON file goog.json.
  • These IP ranges are updated approximately two to four times per year. Use a script to monitor the file change, and update firewall rules accordingly.
  • Use firewalls to securlist *.storage.googleapis.com if possible to avoid monitoring the IP range changes. If this isn’t feasible, use a script to manage rules based on the Google-published IP address list file goog.json, adding and removing ranges resulting from the changes.

Google Cloud Storage doesn’t provide regional URLs and IP ranges. It uses a global load balancer to route traffic to the region where a GCS storage bucket resides. The bucket name is in the GCS URL path rather than in the hostname when the GCS is accessed. The Broadcom CloudSOC Audit Service uses GCS in EU regions for customers in the EU, and GCS in the US for other customers.