ICAP balancing using HAProxy load balancing lets you connect one Squid service to several Worker servers simultaneously and distribute the traffic processing load among them.
By default, ICAP traffic is not encrypted. The application administrator must independently ensure a secure network connection between the HAProxy server and Kaspersky Web Traffic Security, and between the Squid service and the HAProxy server by using traffic tunneling or iptables.