You can use the CLI commands in this procedure to route your malware definition update requests through a reverse proxy before going to avupdate.fireeye.com when your Malware Protection Source is set to HX Preferred or HX Only.
Note
The upstream server must be a reverse proxy. A forward proxy is not supported.
To route your malware definition update requests to a proxy:
Go to CLI configuration mode:
hostname > enable hostname # configure terminalView your current malware proxy parameters:
hostname (config) # show hx server malEnable malware proxy support:
hostname (config) # hx server mal proxy forward enableConfigure the URL you will use to forward the malware definitions:
hostname (config) # hx server mal proxy forward url http://IPXXX:PORTXXX/Note
You must use the IP address of the proxy. If you use the fully qualified domain name of the proxy, then validation will fail.
(Optional) Choose one of the following two authorization methods:
hostname (config) # hx server mal proxy forward auth-header "Basic XXXXXXXXXXXXXX=="hostname (config) # hx server mal proxy forward auth-header "Bearer XXXXXXXXXXXXX=="Note
If you do not indicate an authorization method, then the default option (which sets the Authorization header to null) is used.
hostname (config) # hx server mal proxy forward auth-header ""Save your changes:
hostname (config) # write mem