
Upgrade Instructions 43
Upgrade Instructions: Web Security Gateway
• For Multiple Realm Authentication rules that used Cookie Mode Caching,
the Source IP address list will have been copied to the cookie list on the
Global Authentication Option page.
• Check that the expected domain is in the Auth Sequence list.
Important: The Rule-Based Authentication feature is very rich and can satisfy
many user authentication requirements. To make best use of it, please read
Rule-Based Authentication
.
8. If you use IWA with a load balancer in v7.7.3 (a custom configuration):
IWA with a load balancer is not supported in v7.8.1.
IWA with a load balancer is supported in v7.8.2 and v7.8.3. To get the
support, upgrade to v7.8.1 and then to v7.8.2 or v7.8.3. Follow the special
configuration steps described in the v7.8.2 Release Notes
or the v7.8.3
Release Notes.
9. If Web Security Gateway Anywhere and Data Security are deployed together,
confirm that Content Gateway has automatically re-registered with Data Security
Management Server. If it has not, manually re-register.
a. Ensure that the Content Gateway and Data Security Management Server
system clocks are synchronized to within a few minutes.
b. In the Content Gateway manager:
•Go to Configure > My Proxy > Basic, ensure that Data Security:
Integrated on-box is enabled, and click Apply.
• Next to Integrated on-box, click the Not registered link. This opens the
Configure > Security > Data Security registration screen.
• Enter the IP address of the Data Security Management Server.
• Enter a user name and password for logging onto the Data Security
manager. The user must be a Data Security administrator with Deploy
Settings privileges.
• Click Register. If registration is successful, a message confirms the result
and prompts you to restart Content Gateway. If registration fails, an error
message indicates the cause of failure. Correct the problem and perform
the registration process again.
10. If Web Security Gateway Anywhere and Data Security are deployed together and
upgraded from v7.7.x to version 7.8.x, you must remove stale entries of Content
Gateway instances registered in Data Security system modules:
a. Log onto the TRITON console.
b. Select the Data Security tab.
c. Select Settings > Deployment > System Modules.
d. Listed are 2 instances of each Content Gateway module registered with the
system. Delete the older instances. You can identify these by looking at the
version number.
e. Click Deploy.
11. If Web Security Gateway Anywhere and Data Security are deployed together and
configured to use the on-box policy engine, and then reconfigured during upgrade
or later to use the ICAP interface, the Content Gateway instance must be deleted
Komentarze do niniejszej Instrukcji