Installation guide

Deployment Primer
2-11
IWSVA configured in forward proxy mode provides the following configuration options
to enable client protection:
Reconfiguring Client Settings on page 2-11
Using a Layer 4 Switch on page 2-12
Using a WCCP-enabled Switch or Router on page 2-14
Additionally, when IWSVA is configured in this mode, all traffic can be configured to be
sent to an additional upstream proxy server if applicable.
The configuration options are explored in the table that follows to provide information
that will help you decide which deployment configuration to use.
During the IWSVA installation, select to install IWSVA in the Forward Proxy Mode to
support this configuration.
Reconfiguring Client Settings
HTTP clients (browser or proxy servers) can be configured to contact IWSVA as a proxy.
This configuration change ensures that the client’s Web traffic is forwarded to IWSVA.
The HTTP scanning service must be enabled in the HTTP Proxy mode to process this
traffic.
FTP clients must contact IWSVA instead of the destination server, and use a modified
handshake to supply the FTP server address. The FTP scanning module must be
installed and configured in the standalone mode to process this traffic.
T
ABLE
2-1.
Reconfiguring the Client Settings
A
DVANTAGE
L
IMITATION
No additional hardware required Administrator have to control the settings
for all computers. (Guest computers can
have difficulties.)