Do EdgeSWG (ProxySG) Network Address Translation ?
search cancel

Do EdgeSWG (ProxySG) Network Address Translation ?

book

Article ID: 266747

calendar_today

Updated On:

Products

ISG Proxy ProxySG Software - SGOS

Issue/Introduction

Devices that do NAT, PAT or NAPT (Address Translation for Network, Port or; Network and Port respectively )  usually maintain same TCP session while it rewrites the source IP and/or port (and vice versa)  from said traversing packets.

EdgeSWG (ProxySG) ,  assuming content not servable in cache, said proxied traffic will have two tcp sessions; (1)  client <-> proxy and; (2) proxy <-> OCS (origin content server).   

Resolution

EdgeSWG (ProxySG) uses completely different TCP session when reaching out to OCS and; by default will use its own (WAN) IP when reaching out to OCS.