Web gateways protect users from threats with proactive analysis to filter malicious content from web traffic.
Gateways scan the webpage active content to understand behavior, predict intent, and protect against targeted attacks. If your organization uses a web gateway, you can specify that Web Control not enforce site ratings when a web gateway is detected.
Use one of these methods to configure Web Control to detect a web gateway.
Use your organization's default gateway
Web Control compares the client's default gateway IP address with the organization's gateway IP address specified in the policy. If the IP addresses match, the default gateway enforces network traffic, rather than Web Control.
Detect web gateway enforcement
Web Control tries to contact the respective site. If Web Control can't retrieve content from this site, a web gateway enforces network traffic, rather than Web Control.
Your web gateway must block the site.
Specify internal landmark to use
If Web Control resolves the specified DNS name or IP addresses, it doesn't perform rating or enforcement actions.
Tip
Best practice: Enter both a DNS name and IP addresses.
If you enter the DNS name, Web Control performs a DNS query (doesn't check the local cache) on the host name. If at least one IP address is detected, Web Control doesn't perform rating or enforcement actions.
If you enter IP addresses, Web Control resolves the name for each address. If at least one valid host name is detected, Web Control stops processing and doesn't perform rating or enforcement actions.
If you enter both a DNS name and IP addresses, Web Control performs a DNS query on the DNS host name and checks the result against the specified IP addresses. If it detects a match, Web Control doesn't perform rating or enforcement actions.