auditing web/mail proxies




Hey all,

Has anyone ever audited a proxy during a pen test/IT audit or as an audit on
itself? If so do you have a scope of what kind of checks you reviewed, or a
checklist? The proxy software in question is web sense which addresses both
email filtering and web filtering. Or any tools that can automate the
process most welcome. Look forward to your responses – I couldn’t find to
many resources on proxy auditing.

Kind Regards
Cb
--
View this message in context: http://old.nabble.com/auditing-web-mail-proxies-tp32916010p32916010.html
Sent from the Penetration Testing mailing list archive at Nabble.com.


------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.

http://www.iacertification.org
------------------------------------------------------------------------



Relevant Pages

  • Re: auditing web/mail proxies
    ... Has anyone ever audited a proxy during a pen test/IT audit or as an audit on ... Information Assurance Certification Review Board ... Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. ...
    (Pen-Test)
  • Re: auditing web/mail proxies
    ... Has anyone ever audited a proxy during a pen test/IT audit or as an audit on ... Information Assurance Certification Review Board ... Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. ...
    (Pen-Test)
  • Re: auditing web/mail proxies
    ... Do they allow egress ICMP? ... Does the proxy transparently redirect outbound http requests, ... Information Assurance Certification Review Board ... IACRB CPT and CEPT certs require a full practical examination in order to become certified. ...
    (Pen-Test)
  • Re: Opinions on Burp Suite Web App Scanner
    ... Burp is a great proxy. ... Information Assurance Certification Review Board ... IACRB CPT and CEPT certs require a full practical examination in order to become certified. ...
    (Pen-Test)
  • Re: Flash Web Application
    ... I have tried using burpsuite and webscarab as a proxy, ... can't click the provided choices on the flash web application. ... Information Assurance Certification Review Board ...
    (Pen-Test)