How to setting Sandblast detect both traffic ICAP and SPAN

Can someone guide me to configure Sandblast to detect both ICAP traffic and SPAN traffic?
When I configure SPAN or ICAP individually, everything works fine, but when I configure both only ICAP works and SPAN doesn't. Currently I am configuring both protocols on an interface.

Not sure I understand. For ICAP, is your Security Gateway configured as a ICAP client or ICAP server?

Also, you want the same GW to work in both active traffic forwarding and also mirror mode?

