To add an HTTP proxy, click Add, select HTTP Proxy, and configure the parameters on the following page:
Enable: Select Enable if you want to enable the HTTP proxy.
Name: Specify a unique name for this HTTP proxy.
Description: Enter an informative description for the HTTP proxy.
Object: Specify the applicable scope of the HTTP proxy policy. You can specify the applicable scope based on the user range and endpoint type.
Dst Domain: Specify the destination domain name. By default, All is selected.
If you select Specified, make sure that the specified domain name meets the following requirements:
• The domain name is a fully qualified domain name.
For example, if baidu.com is specified as the destination domain name, the specified domain name may point to zhidao.baidu.com or music.baidu.com. If www.baidu.com is specified as the destination domain name, the specified domain name points only to www.baidu.com.
• The domain name cannot exceed 127 characters in length.
• A maximum of 1,000 domain names are supported.[LCH15][16]
Options: Specify the action, ICAP server groups, cascading proxy server, and proxy IP address for this HTTP proxy.
Action: Specify the action to be performed. Valid values: Allow or Reject. Default value: Allow.
ICAP Server Groups: It determines whether to send data to the ICAP server. You can select None or one or more ICAP server groups. The default value is None, indicating that no data will be sent to the ICAP server. To send data to a specific ICAP server group, select or add that ICAP server group. For more information about the ICAP server group, refer to this chapter's ICAP Server Groups section.[LCH17][18]
Cascading Proxy Server: Default value is None. You can specify or add a cascading proxy server to use the cascading proxy. For more information about cascading proxy servers, refer to Cascading Proxy Servers section in this Chapter.
Proxy IP: Specify the IP address of the outgoing interface that proxy data go through. If you select Auto, the proxy IP address will be automatically chosen. You can also select a specific IP address from the drop-down list. In the list, there are IP addresses of VLAN interfaces, WAN interfaces, bridge interfaces, DMZ interfaces, and interfaces for Single Arm mode (exclusive of IP addresses of LAN interfaces).
If this unit is deployed in Route mode, multiline is supported. A corresponding outgoing line will be chosen if a specific proxy IP address is selected. If Auto is selected, the outgoing line is determined by policy-based routing.