Software Secure Access
Activity Manage

Cisco Secure Access Help Manage Proxy Chaining Network Requirements

Last updated: Aug 07, 2025

Network Requirements

  • Configure your on-premises upstream proxy settings for FQDN anycast and HTTP 80/443 on:
    • swg-url-proxy-https-sse.sigproxy.qq.opendns.com
  • Add a Registered Network in Secure Access that matches the public IP of your on-premises proxy's (NAT) IP address.
  • Route various URLs directly to the internet, not to the Secure Access secure web gateway. For more information, see Secure Access SAML Identity Provider Domains.
  • If you are using SAML authentication for single sign-on (SSO), send requests for id.sse.cisco.com to the Secure Access secure web gateway, not directly to the internet. For more information, see Secure Access SAML Gateway Services.