Cisco Secure Access Help

PDF

Cisco Secure Access Help

SWG Protection Status

Want to summarize with AI?

Log in

Describes SWG Protection Status in Cisco Secure Access. After you deploy the Umbrella module in the installed Cisco Secure Client, a Web Protection Status appears in the Cisco Secure Client endpoint.


After you deploy the Umbrella module in the installed Cisco Secure Client, a Web Protection Status appears in the Cisco Secure Client endpoint. If you do not see a Web Protection Status, the Umbrella module is installed, but Internet Security (OrgInfo.json) is not deployed.


View SWG Protection Status

View status information in the Cisco Secure Client Umbrella module on the user device.

Before you begin

Procedure

  1. Open the Cisco Secure Client.

  2. Click the chart icon at bottom left to open the Statistics menu.

    Status information in the Cisco Secure Client Umbrella module on the user device. Open the Cisco Secure Client. Click the chart icon at bottom left to open the Statistics menu.
  3. Navigate to Umbrella to see Secure Web Gateway information.

    On the user device. Open the Cisco Secure Client. Click the chart icon at bottom left to open the Statistics menu. Navigate to Umbrella to see Secure Web Gateway information.
  4. The following table provides descriptions of the Secure Web Gateway protection status information displayed in the Cisco Secure Client Umbrella module on the user’s device.

    Status Description Condition
    Offline The device is unable to sync with Secure Access and SWG state is unknown. Secure Client on the device has not been able to sync with Secure Access for 100 minutes or longer.
    Protected The device is protected by SWG. SWG Agent service csc_swgagent is running and intercepting web traffic.
    Unprotected The device is not protected by SWG. SWG Agent service csc_swgagent failed to start.
    Configuration Error Failed to update SWG Configuration. Incorrect value in SWGConfig.json
    Cloud Service Unavailable SWG Agent was unable to connect to SWG Proxy. SWG proxy is not reachable.
    Disabled due to trusted network SWG protection is disabled. The device is connected to an AnyConnect trusted network or a network that matches a trusted context defined by your organization's SWG backoff settings. For more information, see the Secure Web Gateway Backoff Settings section of the Configure Cisco Secure Client Settings page.
    Disabled SWG protection is disabled. Depending on the organization's SWG backoff settings, you may see this state if SWG protection is disabled when the device is not on AnyConnect VPN or a trusted network.

What to do next

For more information, see Manage Roaming Devices and the Umbrella Roaming Security chapter of the Cisco Secure Client (including AnyConnect) Administrator Guide, Release 5.1.