A client connects to the proxy server, requesting some service, such as a file, connection, web page, or other resource available from a different server and the proxy server evaluates the request as a way to simplify and control its complexity.Proxies were invented to add structure and encapsulation to distributed systems.Assuming the requested URL is acceptable, the content is then fetched by the proxy.At this point a dynamic filter may be applied on the return path.Some proxies scan outbound content, e.g., for data loss prevention; or scan content for malicious software.Web filtering proxies are not able to peer inside secure sockets HTTP transactions, assuming the chain-of-trust of SSL/TLS (Transport Layer Security) has not been tampered with.All traffic coming from the Internet and with a destination of one of the neighborhood's web servers goes through the proxy server.

It is commonly used in both commercial and non-commercial organizations (especially schools) to ensure that Internet usage conforms to acceptable use policy.A content filtering proxy will often support user authentication to control web access.It also usually produces logs, either to give detailed information about the URLs accessed by specific users, or to monitor bandwidth usage statistics.The SSL/TLS chain-of-trust relies on trusted root certificate authorities.