Blue coat security
Author: g | 2025-04-23
Blue Coat Secure Web Gateway Virtual Appliance, and Symantec Advanced Secure Gateway Software Version: 6.7 Security Target ST Version 1.6 ST Author Acumen Security, LLC. ST Publication Date Janu TOE Reference Blue Coat ProxySG, Blue Coat Reverse Proxy, Blue Coat Reverse Proxy Virtual Appliance, Blue Coat Secure Web Blue Coat Web Security Service REST API Protocol RPM; Blue Coat Web Security Service DSM RPM; Configure Blue Coat Web Security Service to allow QRadar access to the Sync API. Add a Blue Coat Web Security Service log source on the QRadar Console. The following table describes the parameters that require specific values for Blue Coat Web Security
Blue Coat Web Security Service
Threat Response - Integration with BlueCoat¶This section covers all aspects of Threat Response integration with Blue Coat ProxySG. The Proofpoint Threat Response platform can integrate with Blue Coat in the following ways:As an enforcement deviceBlue Coat ProxySG can be used to prevent users from accessing malicious URLs. Threat Response can place URLs reported in security alerts into a Threat Response block list, which is then referenced by Blue Coat ProxySG.Configuring BlueCoat device¶The steps below detail the process for configuring Blue Coat ProxySG to periodically poll Threat Response for a list of malicious URLs. Any URLs placed into this list in Threat Response will be blocked by the Blue Coat ProxySG.1. Create a URL List in Threat Response¶The first step in enabling Threat Response to push malicious URLs to Blue Coat is to create a URL list in Threat Response to hold all of the bad URLs. This will later be sync’d to Blue Coat for use in policies. Follow the steps below to create the URL list.Log in to Threat Response.Navigate to the Lists page.Click on the URL Lists sub-tab to manage your URL Lists.Click the blue Add (+) button next to URL Lists to bring up the New URL List panel.Set the following fields:Name: Description: (Optional)Publish: checkedSave changes.NoteNote that this list has been published. This is necessary to allow Blue Coat to poll Threat Response for list updates. This polling will be configured in Step 3 below.2. Configure Blue Coat Policy Referencing the List¶With the URL list created in Threat Response, we can now configure a Blue Coat policy to block any URLs that get placed on this list.Log in to Blue Coat ProxySG.Navigate to the Configure tab.Click on Advanced configuration to open the advanced configuration editor.In the left navigation menu, navigate to Policy > Policy Files.Change the install policy by performing the following steps:Set the Install Local File from drop-down to Text Editor and click Install.Input the following for the local file text contents:url.category=NetCitadel_List_1 exception(content_filter_denied) Click Install to activate the local file.Click Close to close out of the text editor.Back in the Policy Files configuration, check the box Blue Coat Secure Web Gateway Virtual Appliance, and Symantec Advanced Secure Gateway Software Version: 6.7 Security Target ST Version 1.6 ST Author Acumen Security, LLC. ST Publication Date Janu TOE Reference Blue Coat ProxySG, Blue Coat Reverse Proxy, Blue Coat Reverse Proxy Virtual Appliance, Blue Coat Secure Web Blue Coat Web Security Service REST API Protocol RPM; Blue Coat Web Security Service DSM RPM; Configure Blue Coat Web Security Service to allow QRadar access to the Sync API. Add a Blue Coat Web Security Service log source on the QRadar Console. The following table describes the parameters that require specific values for Blue Coat Web Security Blue Coat Web Proxy What is Discovered and Monitored Event Types Rules Reports Configuration What is Discovered and Monitored Protocol Information discovered Metrics collected Used for SNMP Host name, Interfaces, Serial number CPU utilization, Memory utilization Performance Monitoring SNMP Proxy performance: Proxy cache object count, Proxy-to-server metrics: HTTP errors, HTTP requests, HTTP traffic (KBps); Server-to-proxy metrics: HTTP traffic (KBps), Client-to-proxy metrics: HTTP requests, HTTP Cache hit, HTTP errors, HTTP traffic (KBps); Proxy-to-client metrics: HTTP traffic (KBytes) Performance Monitoring SFTP Proxy traffic: attributes include Source IP, Destination IP, Destination Name, Destination Port, URL, Web category, Proxy action, HTTP User Agent, HTTP Referrer, HTTP Version, HTTP Method, HTTP Status Code, Sent Bytes, Received Bytes, Connection Duration Security Monitoring and compliance Syslog Admin authentication success and failure Security Monitoring and compliance Event Types In ADMIN > Device Support > Event Types, search for "blue coat" to see the event types associated with this device. Rules There are no predefined rules for this device. Reports There are no predefined reports for this device. Configuration SNMP Syslog Sample Syslog Event Access Logging SNMP The following procedures enable FortiSIEM to discover Bluecoat web proxy. Log in to your Blue Coat management console. Go to Maintenance > SNMP. Under SNMP General, select Enable SNMP. Under Community Strings, click Change Read Community, and then enter a community string that FortiSIEM can use to access your device. Click OK. Syslog Syslog is used by Blue Coat to send audit logs to FortiSIEM. Log in to your Blue Coat managementComments
Threat Response - Integration with BlueCoat¶This section covers all aspects of Threat Response integration with Blue Coat ProxySG. The Proofpoint Threat Response platform can integrate with Blue Coat in the following ways:As an enforcement deviceBlue Coat ProxySG can be used to prevent users from accessing malicious URLs. Threat Response can place URLs reported in security alerts into a Threat Response block list, which is then referenced by Blue Coat ProxySG.Configuring BlueCoat device¶The steps below detail the process for configuring Blue Coat ProxySG to periodically poll Threat Response for a list of malicious URLs. Any URLs placed into this list in Threat Response will be blocked by the Blue Coat ProxySG.1. Create a URL List in Threat Response¶The first step in enabling Threat Response to push malicious URLs to Blue Coat is to create a URL list in Threat Response to hold all of the bad URLs. This will later be sync’d to Blue Coat for use in policies. Follow the steps below to create the URL list.Log in to Threat Response.Navigate to the Lists page.Click on the URL Lists sub-tab to manage your URL Lists.Click the blue Add (+) button next to URL Lists to bring up the New URL List panel.Set the following fields:Name: Description: (Optional)Publish: checkedSave changes.NoteNote that this list has been published. This is necessary to allow Blue Coat to poll Threat Response for list updates. This polling will be configured in Step 3 below.2. Configure Blue Coat Policy Referencing the List¶With the URL list created in Threat Response, we can now configure a Blue Coat policy to block any URLs that get placed on this list.Log in to Blue Coat ProxySG.Navigate to the Configure tab.Click on Advanced configuration to open the advanced configuration editor.In the left navigation menu, navigate to Policy > Policy Files.Change the install policy by performing the following steps:Set the Install Local File from drop-down to Text Editor and click Install.Input the following for the local file text contents:url.category=NetCitadel_List_1 exception(content_filter_denied) Click Install to activate the local file.Click Close to close out of the text editor.Back in the Policy Files configuration, check the box
2025-04-08Blue Coat Web Proxy What is Discovered and Monitored Event Types Rules Reports Configuration What is Discovered and Monitored Protocol Information discovered Metrics collected Used for SNMP Host name, Interfaces, Serial number CPU utilization, Memory utilization Performance Monitoring SNMP Proxy performance: Proxy cache object count, Proxy-to-server metrics: HTTP errors, HTTP requests, HTTP traffic (KBps); Server-to-proxy metrics: HTTP traffic (KBps), Client-to-proxy metrics: HTTP requests, HTTP Cache hit, HTTP errors, HTTP traffic (KBps); Proxy-to-client metrics: HTTP traffic (KBytes) Performance Monitoring SFTP Proxy traffic: attributes include Source IP, Destination IP, Destination Name, Destination Port, URL, Web category, Proxy action, HTTP User Agent, HTTP Referrer, HTTP Version, HTTP Method, HTTP Status Code, Sent Bytes, Received Bytes, Connection Duration Security Monitoring and compliance Syslog Admin authentication success and failure Security Monitoring and compliance Event Types In ADMIN > Device Support > Event Types, search for "blue coat" to see the event types associated with this device. Rules There are no predefined rules for this device. Reports There are no predefined reports for this device. Configuration SNMP Syslog Sample Syslog Event Access Logging SNMP The following procedures enable FortiSIEM to discover Bluecoat web proxy. Log in to your Blue Coat management console. Go to Maintenance > SNMP. Under SNMP General, select Enable SNMP. Under Community Strings, click Change Read Community, and then enter a community string that FortiSIEM can use to access your device. Click OK. Syslog Syslog is used by Blue Coat to send audit logs to FortiSIEM. Log in to your Blue Coat management
2025-04-15After analyzing hundreds of millions of hostnames, researchers have determined that many of them are live only for a 24-hour period, timeframe in which they can be used for malicious activities.Over a 90-day period, Blue Coat monitored 660 million unique hostnames requested by 75 million users from all over the world. Of these hostnames, 71% (470 million) only appeared for a single day, which is why they’ve been dubbed by the company as “one-day wonders.”Most of these “one-day wonders” are legitimate and they’re associated with content delivery networks (CDNs), which use them to provide enhanced user experience, and blogging platforms (Tumblr, Blogspot, WordPress). The list of companies that create such websites includes Google, Yahoo and Amazon. Roughly 36% of them are assigned United States IP addresses, while 8% of them have Chinese IPs, Blue Coat said.While most of these short-lived websites are used for legitimate activities, researchers found that 22% of the top 50 parent domains that most frequently used “one-day wonders” were malicious. For example, one .info domain used as a command and control (C&C) server for a Trojan dialer had more than 1.3 million subdomains during the 90-day period in which it was observed by Blue Coat. “Blue Coat security researchers have long observed that malnet operators love to generate large numbers of subdomains on a smaller set of evil domains. These transient sites are a critical component of mass attack support infrastructures. They both ensure additional bots can easily be added to an existing army and give
2025-04-08Filters: AllFreePremiumEnterprise PopularNewMost Download AllAIPSDEPSCDR black suit png Free formal coat png women coat png blue coat with shirt and tie png Free black coat with pattern tie mens suit png Free without tie with blue coat png Free coat and tie marron color png Free formal coat png Free coat and tie png business coat with blue tie png black suit and tie png men black half suit coat workmanship configuration organization business png Free without tie with coat png black half coat fashion men clothing png Free maroon color coat with tie png smooth current half suit coat png men suit png and psd png Free light blue coat with shirt and tie png only coat png Free dark coat with stripe shirt png mens suit and tie coat in black png Free black tie coat mens suit png Free black coat for women png transparent mens formal suit and tie passport photo coat in black png Free emblem of ukraine coat arms png black suit and tie coat formal id photo png Free black coat pngNEWFree women business blue suit upper body ladies coat png Free mens suit and tie coat clipart vector png Free red tie coat mens suit png Free mens suit in black and tie coat png Free spain coat of arm isolated national flag emblem png drawing white lab coat png Free vaseline coat pngNEW red tie and black coat mens suit png Free yellow coated baby png Free nicaragua coat of arms insignia png mens suit and tie coat in navy blue black clipart png Free elegant mujib coat png coat of arms design vector png Free mujib coat png and psd png Free gold coated name plate png Free wait coat pngNEW without tie with black coat png Free coat and tie png coat of arms design vector png Free half lenght suit in blue coat and grey tie png Free tie coat suit mens ware png Free wedding monogram circle heart frame gold ornament coat arms png Free royal imperial coat of arms heraldic crest emblem shield emblem png Free handsome business man in coat tie png Free coat racks pngNEW gray hooded white coat png Free white coat png black pant coat for ment with tie and pocket square png Free woman maroon coat with tie and white shirt png Free business black suit upper body red tie coat
2025-04-02The Russian blue cat is a loyal, intelligent breed with a striking coat that inspired the name. This cat's short, dense hair is uniformly steel blue with an almost silvery cast, making it one of the most distinctive and beautiful cats in the world. Russian blues enjoy interacting and playing with their owners, but they can have an aloof quality that makes them less suitable for homes with rambunctious children or pets. Mellow dogs and gentle children are much preferred by this independent breed. Read on to learn more about the stunning Russian blue cat breed.Breed OverviewPersonality: Friendly and intelligent but aloof, may be reclusive around strangersWeight: Up to 12 poundsLength: Up to 24 inchesCoat Length: Short HairCoat Colors: Steel blueCoat Patterns: SolidEye Color: GreenLifespan: Up to 20 yearsHypoallergenic: SomewhatOrigin: Russia Russian Blue Cat Characteristics The Russian blue is a medium-sized cat breed that reaches maturity at about a year old. They are typically friendly and enjoy being near familiar people in calm surroundings. If strangers, rowdy dogs, or overly affectionate kids approach, though, the Russian blue is likely to retreat for the safety of a hiding spot where it will stay until the environment has returned to normal. Affection LevelHighFriendlinessMediumKid-FriendlyMediumPet-FriendlyMediumExercise NeedsMediumPlayfulnessMediumEnergy LevelMediumIntelligenceHighTendency to VocalizeLowAmount of SheddingLow Cesare Ferrari / Getty Images Appearance The Russian blue’s trademark coat is a shimmery blue with a silvery cast. The short, dense, plush coat is wonderfully easy to care for, requiring minimal grooming. The coat naturally does not shed much. Occasional brushing will keep the coat soft and silky. Even more striking perhaps than the Russian blue’s coat are their large, wide-set, emerald-green eyes. The wedged shape of the head and face gives the Russian blue a charming expression that makes it look like they're perpetually smiling.The medium-sized Russian blue cat is fine-boned and elegant, but ideally lean and muscular as well. Dmitry Zinoviev / 500px / Getty Images History of the Russian Blue Cat Although the Russian blue’s full breed history is not known, these cats are thought to have originated on Archangel Island (Arkhangelsk) in northern Russia where they were once called Archangel cats. They were favored by the Russian czars. Upon gaining popularity among the Russian royalty, the beautiful blue cats were shipped to many parts of Europe. Russian blues were among the contestants of the very first cat shows held in England in the 1880s. In the United States, the Russian blue is recognized by the Cat Fanciers’ Association and The International Cat Association. The Russian blue’s trademark coat is easy to care for, requiring minimal grooming. Because they shed less than other cats, occasional brushing is optional. The Russian blue frequently appears on lists of hypoallergenic cat breeds.
2025-04-17Blue/Gray CatsSolid blue/gray cats are actually black! They carry the black coat gene, but also a secondary gene that dilutes the concentration of pigments. This unique combination creates the beautiful slate blue shade of solid gray cats. The dilution gene, which is called D, causes the eumelanin pigment to be spread out more thinly across the hair shaft, resulting in a lighter color. Cats with two copies of the D gene will have a very light coat color, while cats with one copy of the D gene will have a diluted coat color.4. Tabby Genes & Their Presence in Black CatsSome black cats also carry the tabby gene. The black color usually covers the tabby pattern, but in some felines, tabby markings can be detected under the right lighting. This means that black cats can have subtle stripes or spots that are not visible to the naked eye. The tabby gene, which is called T, produces a pattern of stripes, spots, or swirls on a cat's coat. The dominant form of the gene, T, produces the tabby pattern, while the recessive form, t, produces a solid coat color.5. Color Changes in Black Cat Coats Over TimeA black cat's coat can change color over time. As the cat ages, its coat may show gray and white shades, especially around the face. In some cases, a "rusty" brown shade may also show up, particularly along the tips of coat tufts. This change in coat color is due to a decrease in eumelanin production as the cat ages. The rusty brown shade is caused by a different type of pigment called pheomelanin, which is produced in smaller amounts in black cats.6. The Irrelevance of Coat Length to Feline Coat ColorThe length of a cat's coat is unrelated to its color. Black cats can
2025-04-19