
Upgrade Instructions: Web Security Gateway
42 Websense Web Security Gateway Anywhere
Step 12: Post-upgrade activities for Content Gateway
After you have finished upgrading components, perform the following steps to ensure
that your Content Gateway upgrade is complete.
1. If at the start of the upgrade process you manually moved your existing log files to
a temporary location, move them back to /opt/WCG/logs and delete the files in
the temporary location.
2. Register Content Gateway nodes in the Web Security manager on the Settings >
Content Gateway Access page. Registered nodes add a link to the Content
Gateway Manager logon portal and provide a visual system health indicator: a
green check mark or a red X.
3. Configure Content Gateway system alerts in the Web Security manager. A subset
of Content Gateway system alerts are sent to the Web Security manager (in
addition to Content Gateway Manager). To configure which alerts are sent, in the
Web Security manager go to the Settings > Alerts > System page.
4. If you use SSL support:
a. If your clients don’t yet use a SHA-1 internal Root CA, create and import a
SHA-1 Root CA into all affected clients. See Internal Root CA in Content
Gateway Help.
b. Using the notes you compiled prior to upgrade, rebuild your Static Incident
list.
c. Using the notes you compiled prior to upgrade, recreate your customized error
message pages. (Not required for upgrades from 7.8.x.)
5. If you use proxy user authentication, review the settings on the Global
Authentication Options page (Configure > Security > Access Control >
Global Configuration Options).
6. If you use IWA user authentication, confirm that the AD domain is still joined. Go
to Monitor > Security > Integrated Windows Authentication. If it is not
joined, rejoin the domain. Go to Configure > Security > Access Control >
Integrated Windows Authentication.
7. If you use Multiple Realm Authentication rules, review the converted Rule-Based
Authentication configuration. Go to Configure > Security > Access Control.
a. Check the Domains page.
• IWA domains that were joined before upgrade should still be joined. Select
each domain, click Edit and give each domain a unique Domain
Identifier.
• LDAP and Legacy NTLM domains should be listed. Select each domain,
click Edit and give each domain a unique domain identifier.
b. Check each rule.
• Go to the Authentication Rules page and enter the editor.
• Select each rule and check the configuration.
Commenti su questo manuale