Knowledge Center Search


 

All http URLs blocked due to a security policy that prohibits access to category N/A

  [KB7765] Show KB Properties

  [KB7765] Hide KB Properties

Categories:
Knowledge Base ID: KB7765
Last Updated: 25 Aug 2010
Version: 3.0

Summary:
All http URLs blocked due to a security policy that prohibits access to category N/A

Problem or Goal:
All web connections are being denied when SurfControl is enabled.  All web pages respond with ""... blocked due to a security policy that prohibits access to category N/A"

Solution:

When trying to access a web site, if you see the message " ... blocked due to a security policy that prohibits access to category N/A ", this is an indication that the NetScreen device is unable to reach the SurfControl server.  You can verify this by changing the SurfControl fail mode to permit.  If you can access web sites after changing the fail mode to permit, then this is a good indication that communication between the NetScreen device and the Surf Control server is broken.

To modify the Surf Control fail mode:

CLI

set url fail-mode permit
WebUI

 Go to Screening > URL Filtering > Protocol Selection Go to Screening > URL Filtering > Protocol Selection

  1. Click SC-CPA
    Near the bottom of the page, you will see "If connectivity to the server is lost".  Select Permit.

If DNS is properly configured, time is synchronized to current time, and the URL license is up to date, contact JTAC support for further assistance.

 Go to Screening > URL Filtering > Protocol Selection

Go to Screening > URL Filtering > Protocol Selection

Purpose:
Troubleshooting

Related Links:

 

 

ASK THE KB

Question or KB ID:


 


 

 
Copyright© 1999-2012 Juniper Networks, Inc. All rights reserved.