ICAP

Note: The ICAP configuration option appears on the Configure pane only if you have enabled ICAP in the Features table on the Configure > My Proxy > Basic > General tab.

ICAP provides an alternate interface to Forcepoint DLP, and other data security services that are ICAP-conversant. A primary and backup URI can be specified, and failover and load balancing can be configured. See Configuring the ICAP client and the subsection for ICAP failover and load balancing.

Configure > Networking > ICAP

ICAP Service URI

Specifies the Uniform Resource Identifier for the ICAP service. The format is: icap://hostname:port/path

For example:

icap://ICAP_machine:1344/reqmod The default ICAP port is 1344. If you are using the default port, you need not specify it in the URI.

An optional secondary URI service can be specified immediately after the first by adding a comma and the URI of the second service, no spaces.

Analyze HTTPS Content Select whether decrypted traffic should be sent to the data protection software for analysis or sent directly to the destination.
Analyze FTP Uploads Select whether to send FTP upload requests to the data protection software for analysis. The FTP proxy feature must be enabled. See FTP.
Action for Communication Errors Select whether to allow traffic or send a block page if Content Gateway receives an error while communication with the data protection software.
Action for Large files Select whether to allow traffic or send a block page if a file larger than the size limit specified in the data protection software is sent. The default size limit in Forcepoint DLP is 50 MB.