Websense apply default policy on all user's

rated by 0 users
This post has 7 Replies | 4 Followers

Top 500 Contributor
Posts 8
itsecurity Posted: 15 Mar 2011 12:34 AM

Dear All,

Websense apply default policy on user's , please find below for better understanding issue:-

For user identification we have applied manual authentication secondly everthing would be fine for next with in min websense unable to filter the Website and categorized all sites in "Network error" , then we restart the Filering service then everything is working fine.

Second issue:- Websense applied default policy on all users and some tiime it prompt for user credentials but Websense not accept that and shows "Session timeout" then we restarted the User service and issue got resolved , then we analyze the Application events logs and found application warning error " error says Websense unable to get the group or user detail from DC.

We have continiously facing these issues , please suggest

|
Top 10 Contributor
Posts 1,744
Moderator

Which version of Websense are you using? Please check the Fatal Error messages in Websense.log file.

BTW, just kindly remind you, this is Suggest a Feature forum. Next time, please post the issues with Websense products to: http://community.websense.com/forums/ 

This is the Web Security forum: http://community.websense.com/forums/default.aspx?GroupID=6

More customers will see your posts in there :-)

Best regards

|
Not Ranked
Posts 3

Hi All,

I am experincing the same problem on websense 7.6. i've created policies and applied them to the OU's, but for some reason only the default policy is applied to all the users. how do i enforce the newly created policies to work?

 

|
Top 25 Contributor
Posts 91

I know this post is old but there's no answer and I'm encountering the same issue - the Default policy is being applied to everyone.  I've tried to troubleshoot DC Agent yet that doesn't seem to be the problem.  Any suggestions while I wait for support contact me?

Thanks!

CF

|
Top 10 Contributor
Posts 986
Trusted Users (MVP)

Good ol' testlogserver should be able to shed some light on it for you.  Normally when users are all getting the default policy either a) Users aren't being properly identified or b) Misconfiguration of policies is causing everyone to get the default policy

|
Top 25 Contributor
Posts 91

Thanks Glitch.  The reason I posted is because I've gone through all that so simply stating check the obvious first doesn't really help me.  I've gone through the DC Agent troubleshooting documentation and everything appears to be in order.  As for policies - probably the issue but where to look?  For example, users are being identified correctly but the incorrect policy is being applied - testlogserver shows this.  When I look at the policy config - default is assigned to 0 clients, the basic policy we use is assigned to Domain Users.  If I compare testlogserver results to a check via triton it is the same.  So, how can I check the policies then as that is where I suspect the issue is.

CF

|
Top 10 Contributor
Posts 480

We limit our server subnets to particular whitelisted sites. I created a policy called Server Allowed Destinations and then created the subnets in Clients. Those subnets have the Server Allowed Destinations policy applied to them.

When a person in the AD group that is allowed full Internet access via a different policy tries to access the Internet from a server, they seem to get the default policy because the block page says "all access is blocked" or something similar.

Any chance something similar is happening to you?

|
Top 10 Contributor
Posts 480

Oh yeah, the Real Time Monitor properly identifies them via AD but shows all sites as Blocked when this happens.

|
Page 1 of 1 (8 items) | RSS