Secure Web Proxy overview (original) (raw)

Secure Web Proxy helps you secure all outbound web traffic—HTTP and HTTPS—from your organization's internal network. When you configure your clients to explicitly use Secure Web Proxy as a gateway, Secure Web Proxy is a mandatory security checkpoint for any application or service that tries to access a website outside your organization.

Benefits

Secure Web Proxy provides the following key benefits:

Supported features

Secure Web Proxy supports the following features:

How Secure Web Proxy works

Secure Web Proxy acts as a mandatory security checkpoint for all web traffic from your organization's network to the internet. Internal workloads must comply with Secure Web Proxy security rules before they can reach the internet.

  1. Centralized gateway: your workloads, such as virtual machines (VMs) and containers, are configured to send all outbound web requests to the central Secure Web Proxy instance.
  2. Policy enforcement: the proxy inspects the request and applies your security policies to determine whether to allow or deny the connection.
  3. Secure outbound traffic: if the request is allowed, then the traffic is securely routed out to the internet by using the Google Cloud infrastructure, typically Cloud NAT. The proxy also uses Cloud DNS to resolve external web addresses.

Policies and rules

You can configure the following policies and rules in your Secure Web Proxy instance:

Deployment modes

You can deploy your Secure Web Proxy instance in any one of the following modes:

Limitations

You can integrate Secure Web Proxy with the following Google Cloud tools to enhance the overall security posture of your workloads and applications:

What's next