A good indication that this is happening can be obtained by looking at the jcagent.log and the jump cloud portal
portal { will show a inactive state }
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhUr2iGrMXMLU_49SLx9IlEPsByNf-E0LkR8SCGSHZs5YgjYU7doqgkVbFXWmETLf0ijxB69Eth6xqNM6PChtsois_ajzvE28T4ZavSkRCRjBPb_wSHU3D22AkulMcIChhFUFzk-ISkKns/s640/portal.png)
log { errors on GET/POST to JumpCLoud }
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhp77ueXBU8wGk4vr3WyTOUxGyFFHiddTBLcGGskLXI6n_KmrFSXoqtOiuyV_TqfHq8P-nPNJ-Eki-Rph1BVS1Kdgufe8WmuapNfh64K-zGBvb-0Uhza4aCudtHP8Unii021f6f8jkprP8/s640/Screen+Shot+2017-05-10+at+2.23.12+PM.png)
Your fix to the above issues requires you to place exemptions policies for the jump cloud agents based on the URL method https://agent.jumpcloud.com/* or use a explicit proxy.
Also in a bluecoat proxy it can provide errors such as;
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgvGqpGxTo7jHLPD96_cmQ87vJrXs6E2D4_sF0S5TIOjQxFrqgB-Xg0cqvTtFbIHzSFHg_FtelyFLyUW0WTFsf7Zv7FEYclB9_3dkDgDntlyzyZpjXENBUB-JArgeDMxEc5f9kv1hnoLAo/s640/bcproxy%2527.png)
Also keep in mind the CA authority is flagged via most SSL site analysis tools
https://www.ssllabs.com/ssltest/analyze.html?d=agent.jumpcloud.com
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiAp2BhLtxRkM1ql1PAOm2NaTUn3vUS6Md3sGBehPaoWmRt6J0qf1Ji6tTNTUkqKjOdQGo1rKyWaeLLRs3tFIDbwG4sFRn7gRb-hPAICcFvCpx1kI0BQ3QFXy1d-iuw3ZnkNdMcGKoprTc/s640/SSLLAB.png)
HTbridge
https://www.htbridge.com/ssl/
![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgCr2oYADNJbSkB9hbu-n8nYbaIG9a4w_8TiCwYsjK7TtR7hJw2d_UNfGoXQvlx2z6ffpw3O43shnO7qyBKPCdJFetmt69TvbH8J_fyzbyQywVcEXJRKn3vRjGKTj2F7fz6ZE1NCkmOHM0/s640/Screen+Shot+2017-05-10+at+2.35.18+PM.png)
Ken Felix
Ken Felix
NSE ( network security expert) and Route/Switching Engineer
kfelix -----a----t---- socpuppets ---dot---com
^ ^
=( @ @ )=
o
/ \
No comments:
Post a Comment