Configuring SaaS acceleration on Client Accelerator
After you configure SAM for SaaS acceleration, you can configure Client Accelerator Controller policies for accelerating SaaS traffic on managed endpoints.
To configure the Client Accelerator Controller for SaaS acceleration
1. In SAM, choose Configure > Client Appliances and copy the registration token.
2. On the Client Accelerator Controller, choose Configure > SaaS Accelerator and add these values:
– SaaS Accelerator Manager Hostname or IP Address.
– SaaS Accelerator Manager Port. The Client Accelerator uses port 3900 from the primary interface to communicate with SAM, and the port needs to be open on the branch firewall. The field for the port number is editable but we do not recommend changing the value.
– Registration Token. Paste the registration token you copied in Step 1 into this field.
3. Click Register.
4. In SAM, move this Client Accelerator Controller to the whitelist.
Newly added appliances appear on the graylist in the Access List column.
– Choose Configure > Client Appliances and click the serial number of the Client Accelerator Controller to display the details pane.
– Under Access List, select Whitelist from the Access list drop-down list and click Submit.
You cannot enable SaaS acceleration without moving the Client Accelerator Controller to the whitelist. In SAM, if a Client Accelerator Controller is moved from the whitelist to the blacklist, SaaS acceleration stops working. For more information about the access lists, see
Controlling appliance access.
5. Enable SaaS acceleration on the Client Accelerator Controller. Choose Configure > SaaS Accelerator and in the Configure SaaS Acceleration section, select Enable Acceleration and click Apply.
When you click Apply, be patient. It can take several minutes to start acceleration.
6. Enable SSL optimization on the Client Accelerator Controller policies that include SaaS acceleration.
Choose Manage > Policies and open the policy and select the SSL tab. Then select Enable SSL Optimization.
You cannot enable SaaS acceleration without enabling SSL. If SSL was disabled after SaaS acceleration was enabled, SaaS acceleration will stop working.
For details, see the Client Accelerator User Guide.
7. Optionally, enable proxy chaining interoperability.
– Choose Manage > Policies, and then open a policy.
– Select the SSL tab.
– In the Proxies section, select the Enable SSL Proxy Support check box.
– Click Update policy to push the updated configuration to the managed endpoints.
– Return to the policy, and then select the SaaS Acceleration tab.
– In the Configure SaaS Acceleration section, select the Proxy Chaining Interoperability check box.
– Click Update policy to push the updated configuration to the managed endpoints.
To disable proxy chaining interoperability, clear the Proxy Chaining Interoperability check box, and then click Update policy to push the updated configuration to the managed endpoints.
8. On the Client Accelerator Controller, add an in-path rule to each policy for which you want SaaS acceleration enabled.
The in-path rule is application based or application-bundle based and lets the Client Accelerator Controller connect to the service endpoint of the SaaS service cluster deployed for the selected application.
– Choose Manage > Policies and select the In-Path Rules tab and click Add a New In-Path Rule.
– For the Destination Subnet, select SaaS Application.
– A second menu appears to the right. In the second menu, select a SaaS application for acceleration. Only applications set up for SaaS acceleration on SAM appear in the list.
– Click Add.
See the Client Accelerator User Guide for more information.
9. Enable SaaS acceleration in a policy to configure SaaS acceleration for groups of Client Accelerator endpoints.
You cannot enable SaaS acceleration in a policy without first enabling SaaS acceleration in the Client Accelerator Controller.
– Choose Manage > Policies and open a policy to configure and select the SaaS Acceleration tab.
A helpful list of remaining configuration tasks appears on the page. Completed tasks are prefaced by a check mark.
– Select Enable SaaS Acceleration and click Update Policy.
10. Click Save to Disk to save your settings permanently.
To verify, generate SaaS traffic. For details about monitoring the first connections, see
Monitoring initial SaaS traffic.