V5000 hardware setup

The appliance’s network interfaces must be able to access a DNS server and the Internet, as described below. This information varies slightly depending on the security mode you select for the appliance.

  • V5000: Forcepoint Web Security
  • V5000: Forcepoint Email Security
  • V5000: Forcepoint URL Filtering (no Content Gateway)

V5000: Forcepoint Web Security

Network interface C must be able to access a DNS server. This interface typically has continuous access to the Internet. Essential databases are downloaded from servers through interface C.
  • Ensure that interface C is able to access the download servers at download.websense.com. (As an alternative, some sites configure the P1 proxy interface to download the Master Database as well as other security updates. This change must be made in the Web Security module of the Forcepoint Security Manager. In this case, interface C does not require Internet access.)
  • Make sure the above addresses are permitted by all firewalls, proxy servers, routers, or host files controlling the URLs that the C interface can access.
  • If Network Agent is used, network interface N must be connected to a mirror port on a router or switch.

V5000: Forcepoint Email Security

Interface P1 (and P2, if used) must be able to access a DNS server. These interfaces typically have continuous access to the Internet once the appliance is operational. Essential databases are downloaded from Forcepoint servers through these interfaces.
  • Ensure that P1 (and P2, if used) is able to access the download servers at download.websense.com.
  • Make sure the above addresses are permitted by all firewalls, proxy servers, routers, or host files controlling the URLs that the P1 and P2 interfaces can access.
  • Network interfaces P1 and P2 (if used) must be able to access the mail server.

V5000: Forcepoint URL Filtering (no Content Gateway)

Network interface C must be able to access a DNS server. Interface C must have continuous access to the Internet. Essential databases are downloaded from Forcepoint servers through this interface.
  • Ensure that interface C is able to access the download servers at download.websense.com.
  • Make sure the above address is permitted by all firewalls, proxy servers, routers, or host files controlling the URLs that the C interface can access.
  • If Network Agent is used, network interface N must be connected to a mirror port on a router or switch. Also, if interface N is used to send blocking information, then it must be connected to a bi-directional mirror port. Through the bi-directional mirror port, interface N not only monitors all client traffic but also sends blocking information if needed.