WSS - Username is not recorded in the raw access logs for blocked HTTPS websites that are bypassed from SSL interception.
search cancel

WSS - Username is not recorded in the raw access logs for blocked HTTPS websites that are bypassed from SSL interception.

book

Article ID: 176038

calendar_today

Updated On:

Products

Cloud Secure Web Gateway - Cloud SWG

Issue/Introduction

The username field in the raw access logs will be empty for the denied HTTPS websites that are exempted from SSL interception.

Resolution

When any source\destination is exempted from SSL interception, WSS will still intercept SSL if a block policy matches that specific transaction in order to display the exception page to the user. This is called “Interception on Exception

When WSS is doing interception on exception, the policy transaction will not match an authentication rule, therefore, the raw access logs will not record the username.