Forcepoint Web Security Proxy Connect Endpoint
You can configure the proxy settings while creating the Forcepoint Proxy Connect installation package.
Steps
-
In the PAC file URL field, specify the URL for your organization’s PAC file. Replace the default URL with the customized URL for your deployment.
- Hybrid deployments
For hybrid deployments, the URL can be found on the Settings > HybridConfiguration > User Access page in the Web Security module of the Forcepoint Security Manager.
Select the URL appropriate for your environment (either port 8082 or port 80). For example:
Default (port 8082): http://pac.hybridweb. global.blackspider.com:8082/proxy.pac?p=8h6hxmgf Alternate (port 80): http://pac.hybridweb. global.blackspider.com/proxy.pac?p=8h6hxmgf
In this example, 8h6hxmgf is a unique identifier for an organization. Your identifier is different and defines your organization.
Note the difference between the sub-domains of the default PAC file URL and the sample customized URL. The “hybrid-web” sub-domain is used for on-premises Forcepoint Web Security deployments that use Forcepoint Web Security Endpoint.
- Full cloud deployments
For full cloud deployments, the “webdefence” sub-domain is used. For example, a policy-specific PAC file URL looks something like this:
Default (port 8082): http:// webdefence.global.blackspider.com:8082/ proxy.pac?p=8h6hxmgf Alternate (port 80): http:// webdefence.global.blackspider.com/proxy.pac?p=8h6hxmgf
In this example, 8h6hxmgf is a unique identifier for an organization. Your identifier is different and defines your organization.
You can find policy-specific URLs for your cloud deployment on the General tab of a policy in the Forcepoint Cloud Security Gateway Portal. If you would rather use an account-level PAC file, go to the Web > General page to find the PAC file URL.
- Hybrid deployments
-
Select Allow users to disable endpoints, if you want to allow users to disable the Forcepoint Web Security Proxy Connect Endpoint web protection on their
own endpoint machines.
For example, selecting this option allows users to modify local proxy settings, which can potentially bypass the protections provided by the Forcepoint Web Security Proxy Connect Endpoint software.
-
Click Next.
- If you are only creating a Forcepoint Proxy Connect Endpoint package, the Save Installation Package screen appears next. Continue with Global settings.
- If you are creating a package with another agent, continue with the relevant section.
-
If you had selected Proxy Connect Endpoint or Proxy Connect Endpoint with Forcepoint DLP Endpoint for your MAC installer package, do the following:
- Unzip the MAC installer package.
-
Edit endpoint.config to add wscontext.
The WSCONTEXT value is displayed in the GPO script command string on the Settings > Hybrid Configuration > Hybrid User Identification page in the Web Security module of the Forcepoint Security Manager, or the GPO code string under Deployment Settings on the Web > Endpoint > General page in the Forcepoint Cloud Security Gateway Portal. See Forcepoint Web Security Endpoint packages downloaded from the Forcepoint Cloud Security Gateway Portal (Cloud deployments) for more information.
- When deploying the F1E package, you can double-click WebsenseEndpoint.pkg, and start the installation.