Skip to content

CapaOne Agent Behind a Proxy Server

The CapaOne Agent has no proxy settings of its own. If your network sends internet traffic through a proxy server, the agent works when the proxy meets the requirements on this page.

Configure your proxy server to:

  • Allow HTTPS connections on port 443 to the URLs listed in Windows Agent Requirements.
  • Exclude these URLs from TLS inspection. The agent uses HTTP/2, which doesn’t work through an inspecting proxy.
  • Keep connections open without a maximum connection lifetime.
  • Use an idle timeout of at least 2 minutes.

Symptoms of a proxy that doesn’t meet the requirements

Section titled “Symptoms of a proxy that doesn’t meet the requirements”
Symptom Cause
The device never appears as online. The proxy blocks the URLs, or it inspects TLS traffic.
The device repeatedly appears offline and online. The proxy closes the agent’s connection. The agent keeps one connection to CapaOne open at all times.