Complete the steps for managing the ICAP integration in the following order:
Make sure the third-party device settings are configured so that the device can act as an ICAP client. For details, see ICAP client configuration prerequisites.
(Optional) Enable feedback about the progress of ICAP downloads from the proxy server. See Enabling feedback about ICAP traffic.
Enable the ICAP service on the Intelligent Virtual Execution - Server appliance. For details, see Enabling or disabling ICAP service using the CLI.
Note
The performance of the ICAP server on IVX depends on the number of files submitted. To avoid performance degradation, ensure unwanted or unsupported file types are filtered out at the ICAP client before submission.
Enable the response modification mode. For details, see Enabling or disabling ICAP response modification modes Using the CLI.
Configure the ICAP service settings so that the Intelligent Virtual Execution - Server appliance can run an ICAP server. For details, see Configuring the ICAP server port and SSL certificate using the CLI.
(Optional) Enable ICAP blocking. A Intelligent Virtual Execution - Server appliance operating as an ICAP server can block RESPMOD requests received from ICAP clients. For details, see Enabling or disabling ICAP blocking mode using the CLI.
When ICAP blocking is enabled, detection of a potential threat causes the appliance to block the requested data and instead serve the client browser a HTTP comfort page. For details, see Enabling or Disabling the ICAP Blocking Comfort page using the CLI.