
ProxySG and Advanced Secure Gateway (ASG)
Cloud edge security software
Secure web gateways
Cloud security software
Web security software
- Features
- Ease of use
- Ease of management
- Quality of support
- Affordability
- Market presence
Take the quiz to check if ProxySG and Advanced Secure Gateway (ASG) and its alternatives fit your requirements.
Contact the product provider
Small
Medium
Large
- Manufacturing
- Professional services (engineering, legal, consulting, etc.)
- Transportation and logistics
What is ProxySG and Advanced Secure Gateway (ASG)
ProxySG and Advanced Secure Gateway (ASG) are secure web gateway products that provide web proxying, URL filtering, malware inspection, and policy enforcement for user web traffic. They are typically deployed by security and network teams to control and monitor outbound web access for on-premises users, branch locations, and managed endpoints. The products are commonly implemented as physical or virtual appliances and integrate with enterprise identity sources and logging/SIEM tools. They are positioned for organizations that need granular web access controls and inspection with an appliance-based architecture.
Granular proxy policy controls
The products support detailed policy enforcement for web access, including user/group-based rules and fine-grained controls over web protocols and destinations. This fits environments that require explicit proxy behavior and deterministic routing of traffic. Security teams can apply consistent controls across sites when traffic is forwarded through the gateway. The architecture aligns with organizations that already standardize on proxy-based egress controls.
Multiple deployment form factors
ProxySG/ASG are commonly available as appliance and virtualized deployments, which can suit data center and branch scenarios. This helps organizations that need local enforcement points due to latency, regulatory constraints, or network design. It also supports phased migrations where some locations remain on-premises while others move to cloud-delivered controls. The approach can be useful when cloud-only enforcement is not feasible for all traffic.
Enterprise integration and logging
The gateways typically integrate with enterprise identity systems for user-aware policy and with centralized logging/monitoring workflows. This supports audit and incident response use cases where web activity needs to be correlated with user identity. Integration with existing security operations tooling can reduce the need to replace downstream monitoring processes. It also helps with compliance reporting for controlled web access.
Appliance-centric operational overhead
An appliance/virtual appliance model can require capacity planning, patching, and lifecycle management across multiple locations. Scaling for traffic growth may involve hardware refreshes or additional instances rather than elastic scaling. This can increase operational burden compared with cloud-native secure web gateway services. It may also complicate rapid global expansion if new sites need local infrastructure.
Less aligned to SSE/SASE
Organizations moving toward cloud-delivered security stacks often prefer unified, globally distributed enforcement with integrated ZTNA, CASB, and DLP capabilities. A gateway that is primarily proxy/appliance-based may require additional products or architectural work to reach a comparable consolidated model. This can lead to more complex policy management across web, cloud app access, and private app access. Buyers evaluating modern cloud edge security platforms may see a higher integration effort.
Migration and modernization effort
Enterprises with long-standing proxy deployments may have complex PAC files, explicit proxy configurations, and legacy policy constructs. Modernizing these designs for roaming users and direct-to-internet access can require significant re-architecture and endpoint changes. Maintaining consistent inspection for encrypted traffic can also increase complexity due to certificate management and privacy constraints. These factors can extend deployment timelines in large environments.
Plan & Pricing
| Plan | Price | Key features & notes |
|---|---|---|
| ProxySG (Edge SWG) | Not publicly listed — contact Broadcom sales/authorized partners | Appliance and virtual secure web gateway (Edge SWG). Licensing and subscriptions described in Broadcom product/support pages; pricing is quote-based. |
| Advanced Secure Gateway (ASG) | Not publicly listed — contact Broadcom sales/authorized partners | High-performance secure gateway / reverse proxy (ASG). Sold and licensed via Broadcom channels; software/firmware and SKU details available on Broadcom support. |
Seller details
Broadcom Inc.
Palo Alto, California, USA
1961
Public
https://www.broadcom.com/
https://x.com/Broadcom
https://www.linkedin.com/company/broadcom/