SWG Protection Status
After you deploy the Umbrella module in the installed Cisco Secure Client, a Web Protection Status appears in the Cisco Secure Client endpoint. If you do not see a Web Protection Status, the Umbrella module is installed, but Internet Security (OrgInfo.json) is not deployed.
Table of Contents
Prerequisites
- Administrative privileges on the user device.
- Cisco Secure Client version 5.1.8.105 or later deployed with the Umbrella Roaming Security module or a PAC file for browsers in the environment is required for SWG protection status in Secure Access. For more information, see Release Notes for Cisco Secure Client (including AnyConnect), Release 5.1.
Procedure
View status information in the Cisco Secure Client Umbrella module on the user device.
- Open the Cisco Secure Client.
- Click the chart icon at bottom left to open the Statistics menu.

- Navigate to Umbrella to see Secure Web Gateway information.

For more information, see Manage Roaming Devices and the Umbrella Roaming Security chapter of the Cisco Secure Client (including AnyConnect) Administrator Guide, Release 5.1.
Secure Web Gateway Status Descriptions
Status | Description | Condition |
---|---|---|
Offline | The device is unable to sync with Secure Access and SWG state is unknown. | Secure Client on the device has not been able to sync with Secure Access for 100 minutes or longer. |
Protected | The device is protected by SWG. | SWG Agent service csc_swgagent is running and intercepting web traffic. |
Unprotected | The device is not protected by SWG. | SWG Agent service csc_swgagent failed to start. |
Configuration Error | Failed to update SWG Configuration. | Incorrect value in SWGConfig.json |
Cloud Service Unavailable | SWG Agent was unable to connect to SWG Proxy. | SWG proxy is not reachable. |
Disabled due to trusted network | SWG protection is disabled. | The device is connected to an AnyConnect trusted network or a network that matches a trusted context defined by your organization's SWG backoff settings. For more information, see the Secure Web Gateway Backoff Settings section of the Configure Cisco Secure Client Settings page. |
Disabled | SWG protection is disabled. | Depending on the organization's SWG backoff settings, you may see this state if SWG protection is disabled when the device is not on AnyConnect VPN or a trusted network. |
DNS Protection Status < SWG Protection Status > Customize Windows Installation of Cisco Secure Client
Updated 8 days ago