# SafeSquid Documentation > Deploy Zero-Trust Web Security — SafeSquid Secure Web Gateway documentation. - [Welcome to SafeSquid](https://docs.safesquid.com/getting_started/welcome.md): Zero-Trust web-security enforcement at the HTTP transaction layer. - [Quickstart](https://docs.safesquid.com/getting_started/quickstart.md): Start SafeSquid with a controlled pilot that restores legacy onboarding essentials and produces production-ready evidence. - [Deployment Overview](https://docs.safesquid.com/deployment/deployment_planning.md): The path from sizing and network placement through installation and client routing to a verified SafeSquid control with evidence an auditor can read. - [Choose an Architecture](https://docs.safesquid.com/deployment/choose_an_architecture.md): Decide where SafeSquid intercepts traffic — forward, transparent, TCP, reverse, or chained — and what each choice costs you in client configuration, coverage, and bypass risk. - [Pilot Versus Production](https://docs.safesquid.com/deployment/pilot_versus_production.md): Decide what the first SafeSquid deployment has to prove, and which controls must be owned before a pilot can widen into production traffic. - [Resource Planning](https://docs.safesquid.com/deployment/resource_planning.md): Decide what to measure before sizing a SafeSquid node, and record the capacity inputs that drive CPU, memory, storage, and network decisions. - [Deployment Checklist](https://docs.safesquid.com/getting_started/install_safesquid/prerequisites.md): Confirm host, network, trust, licensing, and evidence requirements are satisfied and owned before running any SafeSquid installer. - [Register Your Key](https://docs.safesquid.com/getting_started/register.md): Create a SafeSquid Self-Service Portal account, activate it by email, and download the activation_key file required for deployment. - [CPU, Memory, Storage, and Throughput Sizing](https://docs.safesquid.com/deployment/sizing.md): Convert peak concurrent connections into CPU, RAM, NIC, and storage decisions for a SafeSquid node, including the AES-NI requirement and NVMe write path. - [Ports and Firewall Rules](https://docs.safesquid.com/deployment/ports_and_firewall_rules.md): The single reference for SafeSquid inbound listeners and outbound endpoints, with the source scopes each rule must be restricted to. - [Log-Retention Planning](https://docs.safesquid.com/deployment/log_retention_planning.md): Set the SafeSquid log retention target, choose local versus forwarded storage, and size the log volume so enforcement evidence survives an incident. - [Licensing Requirements](https://docs.safesquid.com/deployment/licensing_requirements.md): Understand what SafeSquid activation unlocks, how the free and commercial tiers differ, and what licensing state the deployment plan has to assume. - [SafeSquid Appliance Builder](https://docs.safesquid.com/getting_started/install_safesquid/safesquid_appliance_builder.md): Build a security-hardened Debian appliance with SafeSquid, Monit, and BIND9 preinstalled, using the SAB ISO on new bare metal or a virtual machine. - [Linux Server Install](https://docs.safesquid.com/getting_started/install_safesquid/linux_server.md): Install SafeSquid SWG on an existing supported Linux server when the appliance path is not suitable. - [Cloud Deployment](https://docs.safesquid.com/getting_started/install_safesquid/cloud_deployment.md): Deploy SafeSquid SWG in a cloud network with controlled ingress, resilient storage, and production evidence checks. - [Cloud Image or Cloud-Init](https://docs.safesquid.com/deployment/cloud_image_or_cloud_init.md): Choose between the prebuilt SafeSquid cloud image and a cloud-init build, and provision either one without embedding secrets in instance metadata. - [Connect Your Client](https://docs.safesquid.com/getting_started/client_configuration/connect_your_client.md): Choose the right client routing method and prove that pilot traffic reaches SafeSquid before production rollout. - [Explicit Proxy Configuration](https://docs.safesquid.com/getting_started/client_configuration/explicit_proxy.md): Use explicit proxy settings to validate SafeSquid traffic flow on one pilot browser or workstation before managed rollout. - [PAC File Configuration](https://docs.safesquid.com/getting_started/client_configuration/pac_file.md): Deploy a Proxy Auto-Configuration file so managed browsers route approved web traffic through SafeSquid with controlled exceptions. - [System-Wide Proxy Settings](https://docs.safesquid.com/getting_started/client_configuration/system_wide_proxy.md): Configure one managed operating system to send browser and supported application traffic through SafeSquid. - [Enterprise Deployment](https://docs.safesquid.com/getting_started/client_configuration/enterprise_deployment.md): Roll out SafeSquid proxy settings through central endpoint management with staged validation, rollback, and audit evidence. - [Application-Specific Configuration](https://docs.safesquid.com/getting_started/client_configuration/application_specific_configuration.md): Configure proxy settings for tools that do not inherit browser or operating system proxy settings. - [Activate Your License](https://docs.safesquid.com/getting_started/activate.md): Upload the SafeSquid activation key, verify licensed state, and capture evidence before configuring production policy. - [Manage Subscription State](https://docs.safesquid.com/deployment/manage_subscription_state.md): Handle SafeSquid commercial subscription expiry — what degrades, what keeps running, and how to renew or extend the conservation period. - [Forward Proxy](https://docs.safesquid.com/use_cases/scaling_and_high_availability/forward_proxy.md): Configure web browsers to use SafeSquid proxy server, including detailed steps for Chrome and Firefox proxy settings to access the SafeSquid WebGUI. - [Transparent Proxy](https://docs.safesquid.com/use_cases/scaling_and_high_availability/transparent_proxy.md): Deploy SafeSquid in transparent proxy mode to intercept HTTP/HTTPS without client config for policy enforcement and SSL inspection. - [WCCP](https://docs.safesquid.com/use_cases/scaling_and_high_availability/wccp.md): Configure SafeSquid with Cisco WCCP to enable seamless transparent redirection, ensuring proxy-free client setups, load balancing, high availability, and scalable web traffic management. - [TCP Proxy](https://docs.safesquid.com/use_cases/scaling_and_high_availability/tcp_proxy.md): Configure SafeSquid TCP Proxy mode to handle non-HTTP TCP connections, enabling secure proxying of various TCP-based protocols and applications. - [Reverse Proxy](https://docs.safesquid.com/use_cases/scaling_and_high_availability/reverse_proxy.md): Configure SafeSquid as reverse proxy for performance, SSL termination, security, and caching without client proxy settings. - [Proxy Chain](https://docs.safesquid.com/use_cases/scaling_and_high_availability/proxy_chain.md): Deploy SafeSquid behind a parent proxy with proxy chaining, HTTPS inspection, and request forwarding for enterprise integration. - [Proxy Clustering](https://docs.safesquid.com/use_cases/scaling_and_high_availability/proxy_clustering.md): Scale SafeSquid with master-slave clustering, configuration sync, and load balancer integration for high availability and horizontal scaling. - [Master-Slave](https://docs.safesquid.com/use_cases/scaling_and_high_availability/master_slave.md): Configure SafeSquid master-slave architecture for centralized policy sync and reporting across slave instances. - [Configuration Sync](https://docs.safesquid.com/use_cases/customisation/configuration_sync.md): Discover how to enable configuration synchronization across a SafeSquid proxy cluster to ensure consistent policy deployment, reduce administrative overhead, and improve system reliability and security. - [High Availability with Monit and Keepalived](https://docs.safesquid.com/use_cases/scaling_and_high_availability/ha_monit_keepalived.md): Build active-passive SafeSquid high availability using Keepalived for VIP failover and Monit for process supervision, with split-brain protection and tested failover. - [Verify Failover](https://docs.safesquid.com/deployment/verify_failover.md): Test SafeSquid high-availability failover deliberately, confirm the VIP moves, and keep the evidence that proves the control survived a node loss. - [Backup Strategy](https://docs.safesquid.com/use_cases/scaling_and_high_availability/disaster_recovery.md): Decide what SafeSquid backs up, what it does not, and what the disaster-recovery plan must cover separately before the deployment depends on Cloud Restore. - [Configure Cloud Restore](https://docs.safesquid.com/use_cases/customisation/configure_cloud_restore.md): Required setup, how Cloud Restore works, and step-by-step configuration to restore SafeSquid configuration and SSL certificates from the cloud. - [Restore Configuration and Certificates](https://docs.safesquid.com/deployment/restore_configuration_and_certificates.md): Restore SafeSquid policy and SSL material onto a rebuilt or new appliance, and verify what the restore did not bring back. - [Caching and Prefetching](https://docs.safesquid.com/use_cases/performance_acceleration/caching.md): Configure SafeSquid content caching and prefetching to cut bandwidth and latency, and verify objects are actually being served from the local store. - [Bandwidth Management](https://docs.safesquid.com/use_cases/performance_acceleration/manage_bandwidth.md): Control download speed, max download size, and upload size per user with SafeSquid Limits for bandwidth and data-handling policies. - [Performance Plot](https://docs.safesquid.com/use_cases/performance_acceleration/performance_plot.md): Generate SafeSquid performance plots to investigate load, capacity, and timing issues with evidence that supports troubleshooting and operations review. - [Service Health](https://docs.safesquid.com/deployment/service_health.md): Prove the SafeSquid process, proxy listener, and local DNS resolver are running and healthy before routing user traffic through the node. - [Proxy Connectivity](https://docs.safesquid.com/deployment/proxy_connectivity.md): Prove a client reaches the SafeSquid listener and that its requests appear in the access log, using client-side checks the server cannot perform on itself. - [HTTPS Inspection Validation](https://docs.safesquid.com/deployment/https_inspection_validation.md): Prove SafeSquid is decrypting and inspecting HTTPS sessions rather than tunnelling them, using the certificate issuer as the positive test. - [Policy Enforcement](https://docs.safesquid.com/getting_started/configure_web_security_policies.md): Production sequence for turning SafeSquid proxy traffic into inspected, attributed, logged, and auditable web security controls, with a verification step per control. - [Logging and Reporting](https://docs.safesquid.com/deployment/logging_and_reporting.md): Confirm SafeSquid access logs are being written, retained, forwarded, and reportable before the deployment is treated as audit-ready. - [Production-Readiness Checklist](https://docs.safesquid.com/getting_started/verify_your_setup.md): Work through the full SafeSquid validation sequence and confirm every control is enforcing, not merely enabled, before routing production traffic. - [Upgrade SafeSquid](https://docs.safesquid.com/use_cases/upgrade/version_upgrade.md): Upgrade SafeSquid SWG via Web GUI: prerequisites, cleanup, and applying the new tarball package. - [Upgrade Ubuntu](https://docs.safesquid.com/use_cases/upgrade/os_upgrade.md): Non-interactive upgrade of SafeSquid SWG from Ubuntu 20.04 LTS to 24.04 LTS: prerequisites, OS upgrade, DNS, Netplan, and verification. - [Application Ecosystem](https://docs.safesquid.com/safesquid_swg/application_ecosystem/main.md): Navigation hub for SafeSquid SWG enforcement, DNS security, browser isolation, reporting, self-service operations, and intelligence feeds. - [Proxy Service](https://docs.safesquid.com/safesquid_swg/application_ecosystem/proxy_service.md): SafeSquid proxy service role, startup dependency, policy enforcement path, and operational evidence for enterprise SWG deployments. - [Integrated DNS Security](https://docs.safesquid.com/safesquid_swg/architecture/integrated_dns_security.md): Integrated DNS Security in SafeSquid — DNSBL, homograph detection, query accounting, GeoIP-aware controls, and DNS tunnelling risk reduction. - [Remote Browser Isolation](https://docs.safesquid.com/safesquid_swg/application_ecosystem/remote_browser_isolation.md): Remote Browser Isolation role in the SafeSquid SWG ecosystem for separating risky browsing from trusted enterprise endpoints. - [Reporting & Forensics](https://docs.safesquid.com/safesquid_swg/interface/reporting_service.md): Reporting and forensics in SafeSquid — centralized visibility, SIEM-ready logging, audit evidence, and operational investigation workflows for proxy deployments. - [Self-Service Portal](https://docs.safesquid.com/safesquid_swg/interface/self_service_portal.md): SafeSquid Self-Service Portal — cloud-managed activation, licensing, backup, categorization, certificate, and related operational workflows for SafeSquid deployments. - [Threat Intelligence Feeds](https://docs.safesquid.com/safesquid_swg/application_ecosystem/threat_intelligence_feeds.md): SafeSquid threat-intelligence feed role for URL classification, malware signatures, SSL updates, GeoIP, and content-aware enforcement. - [Policy Management Console](https://docs.safesquid.com/safesquid_swg/interface/configuration_portal.md): Administrative interface for defining, simulating, and enforcing SafeSquid access control, URL filtering, SSL inspection, and DLP policies. - [Access the Interface](https://docs.safesquid.com/getting_started/access_the_interface.md): Access the SafeSquid Configuration Portal from an approved management path during onboarding. - [Supporting Services](https://docs.safesquid.com/safesquid_swg/interface/supporting_services.md): Supporting Services reference and operational guidance for SafeSquid SWG administrators. - [Monit Service Governance](https://docs.safesquid.com/safesquid_swg/interface/supporting_services_monit.md): Automated monitoring and self-healing for SafeSquid SWG processes and host resources - [BIND Local DNS Resolver](https://docs.safesquid.com/safesquid_swg/interface/bind.md): Low-latency, reliable DNS resolution for SafeSquid SWG with secure recursion and caching - [NTP Time Synchronization](https://docs.safesquid.com/safesquid_swg/interface/ntp.md): Accurate system time for SafeSquid SWG authentication, TLS, and logging integrity - [Policy Management Console](https://docs.safesquid.com/safesquid_swg/policy_management_console/main.md): Navigation hub for SafeSquid SWG reports, configuration, and support workflows in the policy management console. - [Reports](https://docs.safesquid.com/safesquid_swg/policy_management_console/reports.md): Reports entry point for SafeSquid SWG policy evidence, forensic investigation, SIEM forwarding, and operational review. - [Configure](https://docs.safesquid.com/safesquid_swg/policy_management_console/configure.md): Configure entry point for SafeSquid SWG policy, authentication, SSL inspection, DLP, DNS security, and operational settings. - [Support](https://docs.safesquid.com/safesquid_swg/policy_management_console/support.md): Support entry point for SafeSquid SWG troubleshooting evidence, configuration context, and escalation readiness. - [Files and Folders](https://docs.safesquid.com/safesquid_swg/files_and_folders/main.md): Navigation hub for SafeSquid SWG server paths, service controls, policy files, runtime data, logs, and audit evidence. - [Files and Folders](https://docs.safesquid.com/safesquid_swg/files_and_folders/files_and_folders.md): SafeSquid SWG server path reference for service control, policy storage, runtime data, logs, audit evidence, backup, and rollback. - [Service and Startup Files](https://docs.safesquid.com/safesquid_swg/files_and_folders/service_and_startup_files.md): SafeSquid SWG service control, startup, TCP tuning, log rotation, Monit, PAM, and system tuning path reference. - [Application Binaries and Modules](https://docs.safesquid.com/safesquid_swg/files_and_folders/application_binaries_and_modules.md): SafeSquid SWG binary, module, feature library, section XML, and default startup file path reference. - [Policy, Security, and UI Files](https://docs.safesquid.com/safesquid_swg/files_and_folders/policy_security_and_ui_files.md): SafeSquid SWG activation, policy, SSL, SQLite, user interface, CGI, template, CSS, JavaScript, image, and font path reference. - [Runtime Data and Signatures](https://docs.safesquid.com/safesquid_swg/files_and_folders/runtime_data_and_signatures.md): SafeSquid SWG temporary files, cache, reporting databases, SSL runtime data, user data, and signature store path reference. - [Logs and Audit Evidence](https://docs.safesquid.com/safesquid_swg/files_and_folders/logs_and_audit_evidence.md): SafeSquid SWG config, extended, native, performance, privacy, and process evidence path reference. - [SSL Inspection](https://docs.safesquid.com/use_cases/ssl_inspection/ssl_inspection.md): Configure HTTPS inspection in SafeSquid to decrypt and analyze encrypted traffic for web security, malware detection, and policy enforcement. - [Configure HTTPS Inspection](https://docs.safesquid.com/use_cases/ssl_inspection/configure_https_inspection.md): Prerequisites, certificate generation, enabling SSL inspection, client certificate import, bypass rules, and verification for SafeSquid HTTPS inspection. - [Import Certificate into Chrome or Internet Explorer](https://docs.safesquid.com/use_cases/ssl_inspection/import_certificate_chrome_ie.md): Step-by-step import of SafeSquid SSL certificate into Chrome or Internet Explorer for HTTPS inspection trust. - [Authentication](https://docs.safesquid.com/use_cases/authentication/authentication.md): Configure user authentication in SafeSquid using BASIC, Network Signature, Directory Services (including Kerberos SSO), PAM, and bypass rules. - [Directory Services](https://docs.safesquid.com/use_cases/authentication/directory_services.md): Integrate SafeSquid with Active Directory or OpenLDAP for centralized user authentication and group-based access control. - [Setup Active Directory Integration](https://docs.safesquid.com/use_cases/authentication/setup_active_directory_integration.md): Link SafeSquid with Active Directory to synchronize users and groups for identity-based web security policies. - [Active Directory](https://docs.safesquid.com/use_cases/authentication/active_directory.md): Integrate SafeSquid with Active Directory for seamless user authentication, SSO, and group-based access control. - [Simple Authentication](https://docs.safesquid.com/use_cases/authentication/ad_simple_authentication.md): Configure Active Directory simple (LDAP) authentication in SafeSquid for browser-prompted user identification. - [SSO Authentication](https://docs.safesquid.com/use_cases/authentication/ad_sso_authentication.md): Configure Kerberos-based Single Sign-On (SSO) with Active Directory for transparent user authentication in SafeSquid. - [SSO Authentication with RODC](https://docs.safesquid.com/use_cases/authentication/configure_kerberos_authentication_with_rodc.md): Integrate Active Directory for SSO using Read-Only Domain Controllers (RODC). Includes RWDC preparation, lookup logic, and LDAP configuration. - [OpenLDAP](https://docs.safesquid.com/use_cases/authentication/openldap.md): Integrate SafeSquid with OpenLDAP for centralized user authentication and group-based access control in Linux/Unix environments. - [Simple Authentication](https://docs.safesquid.com/use_cases/authentication/openldap_simple_authentication.md): Configure OpenLDAP simple bind authentication in SafeSquid for directory-backed user identification. - [SSO Authentication](https://docs.safesquid.com/use_cases/authentication/openldap_sso_authentication.md): Enable transparent authentication for OpenLDAP users in SafeSquid using directory profiles and access restrictions. - [Local Credential Store](https://docs.safesquid.com/use_cases/authentication/basic.md): Configure SafeSquid for browser-based user authentication without Active Directory using local credential storage. - [PAM Authentication](https://docs.safesquid.com/use_cases/authentication/pam.md): Configure PAM (Pluggable Authentication Modules) integration with SafeSquid for system-level authentication. - [Internal User Authentication](https://docs.safesquid.com/use_cases/authentication/internal_users.md): Authenticate users by assigning usernames and passwords via the SafeSquid interface when no Active Directory is available. - [Network Signature](https://docs.safesquid.com/use_cases/authentication/network_signature.md): Network Signature reference and operational guidance for SafeSquid SWG administrators. - [User Identification](https://docs.safesquid.com/use_cases/authentication/user_identities.md): Configure user identity recognition methods in SafeSquid including IP-based authentication, directory service integration, and credential management for policy enforcement. - [User Groups](https://docs.safesquid.com/use_cases/authentication/user_groups.md): Configure user groups in SafeSquid for group-based web access policies, enabling differentiated security controls for departments, roles, and teams. - [Bypass Authentication](https://docs.safesquid.com/use_cases/authentication/bypass_authentication.md): Configure tightly scoped authentication bypass in SafeSquid for non-interactive destinations and applications that cannot complete proxy authentication. - [Profiling Engine](https://docs.safesquid.com/use_cases/profiling_engine/profiling_engine.md): Stop guessing who's doing what — profile every HTTP request by identity, application, content, and time for Zero Trust web security. - [Application Signatures](https://docs.safesquid.com/use_cases/profiling_engine/application_signatures.md): Application Signatures reference and operational guidance for SafeSquid SWG administrators. - [Request Profiles](https://docs.safesquid.com/use_cases/profiling_engine/request_profiles.md): Use SafeSquid Request Profiles to classify traffic by method, protocol, host, headers, user agent, and request behavior before applying enforcement policies. - [Response Profiles](https://docs.safesquid.com/use_cases/profiling_engine/response_profiles.md): Use SafeSquid Response Profiles to classify downloads and server responses by MIME type, file extension, size, and headers before applying controls. - [Time Profiles](https://docs.safesquid.com/use_cases/profiling_engine/time_profiles.md): Configure SafeSquid Time Profiler to implement time-based internet access control using customizable time ranges including month, day, weekday, hour, and minute. - [DNS Security](https://docs.safesquid.com/use_cases/dns_security/dns_security.md): SafeSquid's DNS-level security features including DNSBL, GeoIP filtering, and homograph attack detection. - [Homograph Detection](https://docs.safesquid.com/use_cases/dns_security/homograph_detection.md): Detect and block IDN homograph attacks that use visually similar characters to impersonate legitimate domains. - [DNS Blacklisting](https://docs.safesquid.com/use_cases/dns_security/dnsbl.md): Configure SafeSquid DNSBL to block access to dangerous sites using DNS-based blacklist services. - [Server Geo-Location](https://docs.safesquid.com/use_cases/dns_security/geoip.md): Configure SafeSquid SWG server geo-location profiles to enforce location-aware policies for access control, compliance, and routing optimization. - [Malware Scanners](https://docs.safesquid.com/use_cases/malware_scanning/malware_scanners.md): Multi-layer malware detection in SafeSquid using SqScan, ClamAV, ICAP, and adaptable external parsers for threat prevention. - [Clam Antivirus](https://docs.safesquid.com/use_cases/malware_scanning/clamav_malware_scanning.md): Configure ClamAV in SafeSquid to detect and block viruses and malware at the gateway with profile-based policies. - [Malware Signatures via Self-Service Portal](https://docs.safesquid.com/use_cases/malware_scanning/malware_signatures.md): Manage malware signatures via SafeSquid Self-Service Portal to enhance threat intelligence. - [SqScan](https://docs.safesquid.com/use_cases/malware_scanning/sqscan.md): Configure SqScan in SafeSquid for in-memory virus and malware scanning with granular policy levels. - [Threat Intelligence Feeds](https://docs.safesquid.com/use_cases/malware_scanning/threat_intelligence_feeds.md): Real-time cloud-integrated threat intelligence for web categorization, application identification, SSL security, and malware scanning in SafeSquid SWG. - [Native Sandboxing](https://docs.safesquid.com/use_cases/malware_scanning/native_sandboxing.md): Use SafeSquid's native sandboxing capabilities to isolate and inspect suspicious web content. - [Access Restriction](https://docs.safesquid.com/use_cases/access_restriction/access_restriction.md): Build SafeSquid access policies that make web decisions by identity, destination, time, application, and content so enforcement stays precise and auditable. - [Working of Default Entries in Access Restrictions](https://docs.safesquid.com/use_cases/access_restriction/working_of_default_entries_in_access_restrictions.md): Understand how default SafeSquid access-restriction entries behave so you can modify baseline policy safely without creating hidden enforcement gaps. - [Enforce SafeSearch](https://docs.safesquid.com/use_cases/access_restriction/safesearch.md): Enforce SafeSearch on Google, Yahoo, and Bing through SafeSquid so users cannot disable search-result filtering locally. - [Web Categorization](https://docs.safesquid.com/use_cases/access_restriction/web_categorization.md): Review and refine SafeSquid website categorization so destination-based enforcement stays accurate, explainable, and safe for production use. - [Compliance Templates](https://docs.safesquid.com/use_cases/access_restriction/compliance_templates.md): Pre-configured DLP patterns for PCI-DSS, HIPAA, GDPR, and other regulatory compliance requirements using SafeSquid Text Analyser. - [Access Mobile Applications Through SafeSquid](https://docs.safesquid.com/use_cases/access_restriction/access_mobile_applications_through_safesquid.md): Control mobile app internet access through SafeSquid SWG with proxy enforcement and firewall-aware policies. - [Access Remote Desktop Applications Through SafeSquid](https://docs.safesquid.com/use_cases/access_restriction/access_remote_desktop_applications_through_safesquid.md): Understand how remote desktop applications like AnyDesk, TeamViewer, and AmmyAdmin interact with SafeSquid in different network scenarios and how to effectively block or allow access using HTTPS inspection and access profiles. - [Accessing Business Applications Through SafeSquid](https://docs.safesquid.com/use_cases/access_restriction/accessing_business_applications_through_safesquid.md): Troubleshoot and configure SafeSquid to allow business applications by identifying blocked URLs, authentication issues, and SSL inspection requirements. - [Allow Anydesk](https://docs.safesquid.com/use_cases/access_restriction/allow_anydesk.md): Allow AnyDesk and other remote desktop apps through SafeSquid with user profiles, SSL bypass, and request-type filters. - [Allow Outlook to Work Through SafeSquid](https://docs.safesquid.com/use_cases/access_restriction/allow_outlook_to_work_through_safesquid.md): Configure SafeSquid and firewall rules so Microsoft Outlook works with proxy authentication and SSL inspection enabled. - [Allow Remote Applications to Particular Users](https://docs.safesquid.com/use_cases/access_restriction/allow_remote_applications_to_particular_users.md): Allow specific users to access remote applications via SafeSquid policies, including without application signatures. - [Allow Social Networking Sites During Lunch Hours](https://docs.safesquid.com/use_cases/access_restriction/allow_social_networking_sites_during_lunch_hours.md): Allow social networking access during lunch hours via SafeSquid time profiles while keeping productivity controls. - [Allow Specific YouTube Channel and its Playlist](https://docs.safesquid.com/use_cases/access_restriction/allow_specific_youtube_channel_and_its_playlist.md): Block general YouTube but allow specific channels and playlists in SafeSquid for education. - [Block Specific YouTube Channel](https://docs.safesquid.com/use_cases/access_restriction/block_specific_youtube_channel.md): Block a specific YouTube channel using SafeSquid by creating policies based on Channel-ID and List-ID for targeted video restriction. - [Block Particular User Login to Facebook or Gmail](https://docs.safesquid.com/use_cases/access_restriction/block_particular_user_login_to_facebook_or_gmail.md): Block specific users from logging into Facebook or Gmail via SafeSquid for controlled organizational access. - [Restrict AnyDesk](https://docs.safesquid.com/use_cases/access_restriction/restrict_anydesk.md): Restrict AnyDesk access via SafeSquid policies and proxy configuration for secure network access control. - [YouTube API Integration](https://docs.safesquid.com/use_cases/access_restriction/youtube_api_integration_with_safesquid_to_allow_specific_youtube_videos.md): Integrate YouTube API with SafeSquid to allow or block YouTube videos by category for productivity and bandwidth control. - [Content Modifier](https://docs.safesquid.com/use_cases/content_modifier/content_modifier.md): Configure SafeSquid's Content Modifier to dynamically alter HTML, headers, and data in real-time for security and custom web policies. - [Block Advertisements And Banners](https://docs.safesquid.com/use_cases/content_modifier/block_advertisements_and_banners.md): Block ads and banners in SafeSquid to improve load time, security, and bandwidth and reduce distractions. - [Allow Specific Page on Facebook](https://docs.safesquid.com/use_cases/content_modifier/allowing_specific_page_on_facebook.md): Allow specific Facebook pages and block the rest in SafeSquid for controlled social media usage. - [Facebook Read Only Mode](https://docs.safesquid.com/use_cases/content_modifier/facebook_read_only_mode.md): Put Facebook in read-only mode via SafeSquid so users can view but not comment or share. - [Cookie Inspection](https://docs.safesquid.com/use_cases/cookie_inspection/cookie_inspection.md): Configure SafeSquid cookie filter to manage, allow, or block cookies for user privacy and policy enforcement. - [Cookie Filter Configuration and Reference](https://docs.safesquid.com/use_cases/cookie_inspection/cookie_filter_configuration.md): Configure and reference SafeSquid cookie filter: Global, Allow, and Deny rules, expiry and profile options, and solution verification. - [Header Re-Write](https://docs.safesquid.com/use_cases/header_rewrite/header_obfuscation.md): Configure SafeSquid header filter to allow, deny, or insert HTTP headers for client-server communication control. - [Header Filter Configuration and Reference](https://docs.safesquid.com/use_cases/header_rewrite/header_filter_configuration.md): Configure SafeSquid header filter: Global, Allow, Deny, Insert rules, and solution verification. - [Rewriting Policies Reference](https://docs.safesquid.com/use_cases/header_rewrite/rewriting_policies_reference.md): Field-by-field reference for SafeSquid Content Modifier rewriting policies including pattern matching, replacement, MIME types, and applies-to targets. - [Block Personal Gmail, Allow Google Corporate Accounts](https://docs.safesquid.com/use_cases/header_rewrite/block_personal_gmail_allow_google_corporate_accounts.md): Block personal Gmail and allow only Google Workspace accounts in SafeSquid for productivity and data security. - [URL Redirection](https://docs.safesquid.com/use_cases/url_redirection/url_redirection.md): Configure URL redirection policies in SafeSquid to redirect websites, enforce safe search, and implement content steering for security and compliance. - [Redirect One Website to Another](https://docs.safesquid.com/use_cases/url_redirection/redirect_one_website_to_another.md): Configure SafeSquid to redirect one URL to another using Real Time Content Security Redirect policies. - [Data Leakage Prevention](https://docs.safesquid.com/use_cases/data_leakage_prevention/data_leakage_prevention.md): Catch data leaks before they become breaches — detect SSN, credit cards, PHI in uploads and block them in real time. - [Content Moderation](https://docs.safesquid.com/use_cases/data_leakage_prevention/content_analyser.md): Combine SafeSquid categorization, text analysis, and image analysis to control inappropriate or risky web content with validation-ready policy design. - [Text Analyzer](https://docs.safesquid.com/use_cases/data_leakage_prevention/text_analyser.md): Use SafeSquid Text Analyzer to score and control web content based on keywords, patterns, and MIME-aware inspection for DLP and content policy enforcement. - [Image Analyzer](https://docs.safesquid.com/use_cases/data_leakage_prevention/image_analyser_ai.md): Use SafeSquid Image Analyzer to inspect images in real time and control risky or policy-violating visual content with profile-aware enforcement. - [Content Fingerprints](https://docs.safesquid.com/use_cases/data_leakage_prevention/true_mime_fingerprints.md): Use SafeSquid content fingerprinting and true MIME detection to identify disguised files, reduce spoofing risk, and improve content-control accuracy. - [External Parser](https://docs.safesquid.com/use_cases/data_leakage_prevention/adaptable_external_parser.md): Use SafeSquid External Parser to send request or response content to a custom program for specialized inspection, transformation, or policy decisions. - [Block Emails or Files including Archives or Social Posts using Keywords](https://docs.safesquid.com/use_cases/data_leakage_prevention/block_emails_or_files_including_archives_or_social_posts_using_keywords.md): Block emails, files, archives, and social posts by keyword in SafeSquid for data leakage protection. - [Block Inappropriate Images by Using Image Analyzer](https://docs.safesquid.com/use_cases/data_leakage_prevention/block_inappropriate_images_by_using_image_analyzer.md): Block inappropriate images in real time with SafeSquid Image Analyzer for safe browsing. - [Elevated Privacy](https://docs.safesquid.com/use_cases/data_leakage_prevention/elevated_privacy.md): Use SafeSquid Elevated Privacy to block third-party cookies, suppress referrer data, and reduce user-agent exposure with profile-aware deployment. - [Audit & Forensics](https://docs.safesquid.com/use_cases/audit_and_forensics/audit_forensics.md): Comprehensive network monitoring, security analysis, and forensic capabilities for enterprise web security management - [Monit](https://docs.safesquid.com/use_cases/audit_and_forensics/audit_forensics_monit.md): Install and verify Monit so SafeSquid restarts automatically after local service failure and operators can detect monitoring gaps early. - [Reporting Module](https://docs.safesquid.com/use_cases/audit_and_forensics/reporting_module.md): Use SafeSquid reporting to investigate activity, drill into users and destinations, and export time-bounded evidence for operations and audit review. - [Security Logs](https://docs.safesquid.com/use_cases/audit_and_forensics/security_logs.md): SafeSquid security logs — native, extended, configuration, performance, bypass, and privacy records used for troubleshooting, investigations, and audit evidence. - [Integrations](https://docs.safesquid.com/use_cases/integrations/integrations.md): Enterprise integration with VPN for policy enforcement and secure remote access through SafeSquid SWG. - [ICAP Integration](https://docs.safesquid.com/use_cases/integrations/icap.md): Configure ICAP protocol integration in SafeSquid for offloading content scanning to dedicated antivirus and DLP servers for enhanced threat detection. - [VPN Integration](https://docs.safesquid.com/use_cases/scaling_and_high_availability/vpn.md): Configure and manage VPN settings for SafeSquid Web Security Clients via Self-Service Portal, including FQDN setup and verification. - [Performance Accelerators](https://docs.safesquid.com/use_cases/performance_acceleration/performance_accelerators.md): Use SafeSquid performance accelerators such as caching, prefetching, bandwidth management, speed limits, and WCCP with deployment-aware expectations. - [Speed Limits](https://docs.safesquid.com/use_cases/performance_acceleration/speed_limits.md): Configure connection speed limits in SafeSquid to control per-user or per-group bandwidth consumption. - [Customisation](https://docs.safesquid.com/use_cases/customisation/customisation.md): Customize SafeSquid's behavior through custom templates for error pages and branding, and startup parameters for performance tuning and operational configuration. - [Custom Templates](https://docs.safesquid.com/use_cases/customisation/custom_templates.md): Create custom templates in SafeSquid for error pages, branding, and blocked-content replacement using HTML, images, or executables. - [Startup Parameters](https://docs.safesquid.com/use_cases/customisation/startup_parameters.md): Configure SafeSquid startup parameters (LISTEN_IP, MASTER_IP, LOG_LEVEL, threading) for performance and reliability. - [First configuration](https://docs.safesquid.com/admin_guide/start_here/first_configuration.md) - [Architecture and request pipeline](https://docs.safesquid.com/admin_guide/start_here/architecture.md) - [SafeSquid daemon](https://docs.safesquid.com/admin_guide/start_here/daemon.md) - [Network settings](https://docs.safesquid.com/admin_guide/infrastructure_and_access/network_settings.md) - [Access restrictions](https://docs.safesquid.com/admin_guide/infrastructure_and_access/access_restrictions.md) - [Authentication](https://docs.safesquid.com/admin_guide/start_here/authentication.md) - [Access Profiles](https://docs.safesquid.com/admin_guide/policies_and_profiles/access_profiles.md) - [Logging and troubleshooting](https://docs.safesquid.com/admin_guide/start_here/logging.md) - [Debug response headers](https://docs.safesquid.com/admin_guide/start_here/debug_response_headers.md) - [startup.ini tunables](https://docs.safesquid.com/admin_guide/start_here/startup_ini.md) - [Cloud / categorisation feeds](https://docs.safesquid.com/admin_guide/start_here/cloud_feeds.md) - [Integrations](https://docs.safesquid.com/admin_guide/start_here/integrations.md) - [Tools and Reports](https://docs.safesquid.com/admin_guide/start_here/tools_and_reports.md) - [Access restrictions](https://docs.safesquid.com/admin_guide/infrastructure_and_access/access_restrictions.md) - [Network settings](https://docs.safesquid.com/admin_guide/infrastructure_and_access/network_settings.md) - [System configuration](https://docs.safesquid.com/admin_guide/infrastructure_and_access/system_configuration.md) - [Integrate LDAP](https://docs.safesquid.com/admin_guide/infrastructure_and_access/integrate_ldap.md) - [HTTPS inspection](https://docs.safesquid.com/admin_guide/infrastructure_and_access/https_inspection.md) - [Forward proxy](https://docs.safesquid.com/admin_guide/infrastructure_and_access/proxy_chain.md) - [FTP browsing](https://docs.safesquid.com/admin_guide/infrastructure_and_access/ftp_browsing.md) - [WCCP](https://docs.safesquid.com/admin_guide/infrastructure_and_access/wccp.md) - [Subscription](https://docs.safesquid.com/admin_guide/infrastructure_and_access/subscription.md) - [SSqore](https://docs.safesquid.com/admin_guide/infrastructure_and_access/ssqore.md) - [Access Profiles](https://docs.safesquid.com/admin_guide/policies_and_profiles/access_profiles.md) - [Limits](https://docs.safesquid.com/admin_guide/policies_and_profiles/speed_limits.md) - [Request Types](https://docs.safesquid.com/admin_guide/policies_and_profiles/request_types.md) - [Response Types](https://docs.safesquid.com/admin_guide/policies_and_profiles/response_types.md) - [Time Profiler](https://docs.safesquid.com/admin_guide/policies_and_profiles/time_profiler.md) - [Templates](https://docs.safesquid.com/admin_guide/policies_and_profiles/templates.md) - [Application Signatures](https://docs.safesquid.com/admin_guide/policies_and_profiles/application_signatures.md) - [Content Signatures](https://docs.safesquid.com/admin_guide/policies_and_profiles/content_signatures.md) - [Suggested Profiles](https://docs.safesquid.com/admin_guide/policies_and_profiles/suggested_profiles.md) - [Categorize Web-Sites](https://docs.safesquid.com/admin_guide/policies_and_profiles/categorize_web_sites.md) - [Cookie filtering](https://docs.safesquid.com/admin_guide/filtering_and_privacy/cookie_filter.md) - [Header filter](https://docs.safesquid.com/admin_guide/filtering_and_privacy/header_filter.md) - [Text analyzer](https://docs.safesquid.com/admin_guide/filtering_and_privacy/text_analyzer.md) - [DNS blacklist](https://docs.safesquid.com/admin_guide/filtering_and_privacy/dns_blacklist.md) - [URL redirect](https://docs.safesquid.com/admin_guide/filtering_and_privacy/redirect.md) - [Content rewrite](https://docs.safesquid.com/admin_guide/filtering_and_privacy/content_modifier.md) - [Elevated privacy](https://docs.safesquid.com/admin_guide/filtering_and_privacy/elevated_privacy.md) - [External applications](https://docs.safesquid.com/admin_guide/filtering_and_privacy/external_applications.md) - [Cache settings](https://docs.safesquid.com/admin_guide/performance/caching.md) - [Prefetch](https://docs.safesquid.com/admin_guide/performance/prefetching.md) - [Clam antivirus](https://docs.safesquid.com/admin_guide/security_scanners/clam_antivirus.md) - [SqScan](https://docs.safesquid.com/admin_guide/security_scanners/sqscan.md) - [Image analyzer](https://docs.safesquid.com/admin_guide/security_scanners/image_analyzer.md) - [DLP](https://docs.safesquid.com/admin_guide/security_scanners/dlp.md) - [ICAP](https://docs.safesquid.com/admin_guide/security_scanners/icap.md) - [Troubleshooting](https://docs.safesquid.com/troubleshooting/troubleshooting.md): Comprehensive diagnostic procedures and resolution guides for common SafeSquid proxy issues, connection failures, and configuration problems - [Blank Report Page](https://docs.safesquid.com/troubleshooting/blank_report_page.md): Diagnose and resolve SafeSquid blank report page incidents with causes, recovery actions, and audit evidence. - [Connection Failure to Websites](https://docs.safesquid.com/troubleshooting/connection_failure_on_websites.md): Diagnose and resolve SafeSquid connection failure to websites incidents with causes, recovery actions, and audit evidence. - [Custom Categorization Not Working](https://docs.safesquid.com/troubleshooting/custom_categorisation_not_working.md): Diagnose and resolve SafeSquid custom categorization not working incidents with causes, recovery actions, and audit evidence. - [Free disk and RAM to restore proxy operation](https://docs.safesquid.com/troubleshooting/disk_space_and_ram_are_full.md): Diagnose and resolve SafeSquid free disk and ram to restore proxy operation incidents with causes, recovery actions, and audit evidence. - [DNS Failure](https://docs.safesquid.com/troubleshooting/dns_failure.md): Diagnose and resolve SafeSquid dns failure incidents with causes, recovery actions, and audit evidence. - [LDAP Entries Not Fetched](https://docs.safesquid.com/troubleshooting/failed_to_fetch_ldap_entries.md): Diagnose and resolve SafeSquid ldap entries not fetched incidents with causes, recovery actions, and audit evidence. - [Using find_client_id.sh for Connection Logs](https://docs.safesquid.com/troubleshooting/how_to_use_find_client_id_sh_for_getting_complete_connection_log.md): Use the find_client_id.sh script to extract complete connection details from SafeSquid logs for troubleshooting and forensic analysis. - [Troubleshooting Installation Issues](https://docs.safesquid.com/troubleshooting/installation_issues.md): Diagnose and resolve SafeSquid troubleshooting installation issues incidents with causes, recovery actions, and audit evidence. - [Interface Access Denied](https://docs.safesquid.com/troubleshooting/interface_access_denied.md): Diagnose and resolve SafeSquid interface access denied incidents with causes, recovery actions, and audit evidence. - [Unable to Generate Support Tar-ball](https://docs.safesquid.com/troubleshooting/no_tar_ball_support.md): Diagnose and resolve SafeSquid unable to generate support tar-ball incidents with causes, recovery actions, and audit evidence. - [Unable to Generate Performance Plot](https://docs.safesquid.com/troubleshooting/not_generating_performance_plot.md): Diagnose and resolve SafeSquid unable to generate performance plot incidents with causes, recovery actions, and audit evidence. - [Product Activation Failure](https://docs.safesquid.com/troubleshooting/product_failure.md): Diagnose and resolve SafeSquid product activation failure incidents with causes, recovery actions, and audit evidence. - [Proxy Server Refusing Connections Error](https://docs.safesquid.com/troubleshooting/proxy_server_refusing_connection_error.md): Diagnose and resolve SafeSquid proxy server refusing connections error incidents with causes, recovery actions, and audit evidence. - [SafeSearch Not Working](https://docs.safesquid.com/troubleshooting/safesearch_not_working.md): Diagnose and resolve SafeSquid safesearch not working incidents with causes, recovery actions, and audit evidence. - [SSL Certification Errors](https://docs.safesquid.com/troubleshooting/ssl_inspection_issues.md): Diagnose and resolve SafeSquid ssl certification errors incidents with causes, recovery actions, and audit evidence. - [SSO Authentication Fail](https://docs.safesquid.com/troubleshooting/sso_authentication_fail.md): Diagnose and resolve SafeSquid sso authentication fail incidents with causes, recovery actions, and audit evidence. - [Login Issues on Specific Websites](https://docs.safesquid.com/troubleshooting/unable_to_login_specific_website.md): Diagnose and resolve SafeSquid login issues on specific websites incidents with causes, recovery actions, and audit evidence. - [Website Not Accessible](https://docs.safesquid.com/troubleshooting/website_not_accessible.md): Diagnose and resolve SafeSquid website not accessible incidents with causes, recovery actions, and audit evidence. - [Whitelisted Websites Blocked](https://docs.safesquid.com/troubleshooting/whitelisted_website_blocked.md): Diagnose and resolve SafeSquid whitelisted websites blocked incidents with causes, recovery actions, and audit evidence. - [FAQs](https://docs.safesquid.com/faqs/faqs.md): Frequently asked questions about SafeSquid Secure Web Gateway covering installation, configuration, licensing, and troubleshooting common issues.