Single agent

This section provides the procedure for single agent integration of Forcepoint CASB and Forcepoint Web Security Cloud (agent or agentless Proxy Connect).

The integration streamlines deployment by using a single agent to manage both CASB inline traffic and Web traffic. It reduces complexity, eliminates redundant configurations, and delivers a unified security approach.

Note: Only cloud deployment is supported at this time.

The diagram below illustrates the logical traffic flow when integration between the services is enabled.

  1. Step 1: The agent (F1E or F1A) or agentless deployment, operating in PCEP mode only, sends all web and cloud traffic to Web Security Cloud for inspection.
    Note: DCEP mode is not supported.
  2. Step 2: Web Security Cloud handles generic web traffic (e.g., browsing websites).
  3. Step 3: For managed cloud applications, Web Security Cloud forwards traffic to CASB via proxy chaining.
  4. Step 4: CASB applies policies and sends traffic to the respective cloud applications.

Features and benefits:

  • Agent Consolidation: A single agent for both web and application traffic, reducing management complexity.
  • Simplified experience: Accelerates adoption of Web Security Cloud and CASB through a unified deployment model.
  • Strategic Impact: Establishes consistent security, visibility and control for all web and cloud traffic.