Bluecoat ÕýÏò´úÀíÅäÖÃ
ÕýÏò´úÀí
BluecoatÅäÖÃ×î¼Ñʵ¼ù
For SGOS V4.X
µÚÆß°æ
Bluecoat¹«Ë¾ 2009Äê4 Ô www.bluecoat.com
µÚ1Ò³/¹²56Ò³
Bluecoat ÕýÏò´úÀíÅäÖÃ
±¾ÎĵµµÄÄ¿µÄÊÇͨ¹ýÕýÈ·µÄÅäÖü°²âÊÔ²½Ö裬ʹBlue Coat SGÔÚÕýÏò´úÀí²âÊÔÖдﵽ×î¼ÑµÄЧ¹û¡£ÆäÖаüÀ¨ÆóÒµÓÃÏÔʽ´úÀíºÍÔËÓªÉÌ´ø¿íÔöÒæÀà͸Ã÷´úÀíµÄ²âÊÔÖдﵽ×î¼ÑЧ¹û¡£½¨Òé·²ÊÇÅöµ½ÒÔÔËÓªÉÌ´ø¿í½ÚʡΪĿµÄµÄ²âÊÔ£¬Ñϸñ°´ÕÕ±¾ÎĵµÃèÊöµÄ²½Öè¡£
ÎĵµÐÞ¶©ÀúÊ·
°æ±¾¼°ÄÚÈÝ V1£¬´´Á¢Îĵµ V2£¬¼ÓÈë´ø¿í¸ºÔöÒæ½â¾ö·½°¸ºÍC/SÓ¦ÓÃͨ¹ý´úÀíÉÏÍøÉ趨 V3£¬¸Ä½ø¸ºÔöÒæ·½°¸£¬¼ÓÈëDNSÕï¶Ï£¬¼°ÓÎϷͨ¹ýSG͸Ã÷´úÀíÉÏÍøµÄÉ趨 V4£¬¼ÓÈë·ÉÐÅͨ¹ýSGÓû§ÈÏÖ¤É趨 V5£¬ÐÞ¶©´ø¿í¸ºÔöÒæ½â¾ö·½·¨ V6£¬ ÐÞ¶©C/SÈí¼þͨ¹ý´úÀíµÄÉ趨¼°ÐÔÄܵ÷ÓÅÉ趨£¬¼ÓÈë²»Ö§³Ö´úÀíµÄC/SÈí¼þµÄÖ§³Ö, ÐÞ¸Ä2.9½ÚÖÐDNSÅäÖõÄ˵Ã÷ V7£¬Ôö¼Ó2.10 Ç¿ÖÆ»º´æÏÂÔØÍøÕ¾ 2.11Ïû³ýTrust-destination-ip¶Ô»º´æµÄÓ°Ïì 2.12 Ïû³ý»º´æÄÚÈݹýÆÚ ¶Å·æ ¶Å·æ ·¾üÁú ë¿¡ ë¿¡ ×÷Õß ½ðÖ¾Ó ¶Å·æ/³ÌÏþêÉ
µÚ2Ò³/¹²56Ò³
Bluecoat ÕýÏò´úÀíÅäÖÃ
Ŀ¼
Ò»¡¢ SGÅäÖùØÓÚWEB-CACHE»ù±¾ÅäÖà ........................................... 5
1.1
1.2 1.3
¹ØÓÚ²¿Êð·½Ê½ ................................................................................................ 5 ¹ØÓÚ²Ù×÷ϵͳ°æ±¾ ........................................................................................ 5 »ù±¾ÅäÖò½Öè ................................................................................................ 5
¶þ¡¢ ÈçºÎµ÷ÕûSGÐÔÄܺÍÔöÒæÐ§¹û ...................................................... 11
2.1
2.2 2.3 2.4 2.5 2.6 2.7 2.8 2.9 2.10 2.11 2.12
ÔÚ´óÁ÷Á¿Çé¿öϲ¢·¢´¦ÀíµÄÓÅ»¯ .............................................................. 11 ±ÜÃâ´ø¿í¸ºÔöÒæµÄ×î¼Ñ²âÊÔ²½Öè .............................................................. 14 Ö´ÐÐCache³äÂú .......................................................................................... 14 ÊÓÆµÇ¿ÖÆ»º´æ .............................................................................................. 15 Ç¿ÖÆ»º´æÃ»Óлº´æ±ê¼ÇµÄÁ÷Á¿ .................................................................. 17 Ç¿ÖÆ»º´æÎ¢ÈíµÄÉý¼¶°ü .............................................................................. 17 ½ûÖ¹ËùÓаüº¬Range: bytes headerµÄÇëÇ󣨿ÉÑ¡£© ............................... 18 ¹ØÓÚBlue Coat´ø¿íÔöÒæÍ³¼ÆÊý¾Ý ............................................................ 18 DNSÅäÖà .................................................................................................... 18 Ç¿ÖÆ»º´æÏÂÔØÍøÕ¾ ...................................................................................... 23 Ïû³ýTrust Destination IP¶Ô»º´æÓ°Ïì..................................................... 25 Ïû³ý»º´æÄÚÈݹýÆÚ ....................................................................................... 26
Èý¡¢ ²é¿´ÔöÒæÐ§¹û .................................................................................. 26 ËÄ¡¢ ÈçºÎ·ÖÎöÁ÷Á¿½ø¶øÓÅ»¯ .................................................................. 29
4.1
4.2
ͨ¹ýÈÕÖ¾·ÖÎö .............................................................................................. 29 ͨ¹ýPolicy Trace·ÖÎö .............................................................................. 31 4.2.1 Ôö¼Ó¶îÍâµÄ²ßÂÔ+Trace ...................................................................... 31
µÚ3Ò³/¹²56Ò³
Bluecoat ÕýÏò´úÀíÅäÖÃ
4.2.2 ´ò¿ª²ßÂÔTraceÒ³Ãæ½øÐзÖÎö .......................................................... 32 4.3 ¼ì²éDNS Worker ...................................................................................... 32
Îå¡¢ SG͸Ã÷»º´æ»·¾³QQµÄÔËÐÐ ....................................................... 34 Áù¡¢ SGºÍÓÎÏ·¼°Ìض¨Ó¦ÓõļæÈÝÐÔÎÊÌâµÄ½â¾ö ............................... 37
6.1
͸Ã÷´úÀíϱ£Ö¤ÓÎÏ·Äܹ»Í¨¹ýSG·ÃÎÊ .................................................. 37
6.1.1 Reflect-Client-IP±£Ö¤ÓÎÏ··þÎñÆ÷µÄÈÏÖ¤ºÍ¼Ç¼²»³öÎÊÌâ ............. 37 6.1.2 ±£Ö¤ÁªÖÚÓÎÏ··ÃÎÊ¿ÉÒÔͨ¹ý ............................................................... 39 6.1.3 ÉèÖÃMTU±£Ö¤ÓÎÏ··ÃÎÊͨ¹ý ............................................................ 39 6.2 ÏÔʽ´úÀíϱ£Ö¤MSNÄܹ»Í¨¹ýSG·ÃÎÊ ............................................... 39
Æß¡¢ SGѹÁ¦¹ýÔØµÄ±£»¤²ßÂÔ................................................................ 40
7.1 7.2
SGÁ÷Á¿¹ýÔØ±£»¤²ßÂÔ ............................................................................... 40 CPUÍ»·¢¹ýÔØµÄ±£»¤²ßÂÔ ........................................................................ 43
°Ë¡¢ C/SÈí¼þͨ¹ýSG´úÀí ................................................................... 45
8.1 8.2 8.3 8.4
Default policy Allow ºÍCPLÖеÄAllowµÄÇø±ð ..................................... 45 ±£Ö¤µäÐ͵ÄC/SÓ¦ÓÃͨ¹ý´úÀí·þÎñÆ÷Äܹ»·ÃÎÊ ..................................... 48 ²»Ö§³Ö´úÀíµÄC/SÈí¼þͨ¹ýSGÉÏÍøµÄ·½Ê½ ......................................... 51 É趨·Å¿íHTTPÐÒéµÄÈÝÈÌ¶È ................................................................. 52
¾Å¡¢ ·ÉÐÅͨ¹ýSG´úÀíÓû§ÈÏÖ¤µÄÅäÖà .............................................. 52
µÚ4Ò³/¹²56Ò³