Network Requirements
- Configure your on-premises upstream proxy settings for FQDN anycast and HTTP 80/443 on:
- swg-url-proxy-https-sse.sigproxy.qq.opendns.com
- Add a Registered Network in Secure Access that matches the public IP of your on-premises proxy's (NAT) IP address.
- Route various URLs directly to the internet, not to the Secure Access secure web gateway. For more information, see Secure Access SAML Identity Provider Domains.
- If you are using SAML authentication for single sign-on (SSO), send requests for id.sse.cisco.com to the Secure Access secure web gateway, not directly to the internet. For more information, see Secure Access SAML Gateway Services.