<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Azure Datacenter Object - VM, Subnet and VMSS only? in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/254181#M5434</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/61698"&gt;@Sam2&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;For the app services that you want to use in the security policy as data center object, would you like to inspect the traffic only for the public ip ?&lt;/P&gt;</description>
    <pubDate>Tue, 29 Jul 2025 10:47:20 GMT</pubDate>
    <dc:creator>noyerez</dc:creator>
    <dc:date>2025-07-29T10:47:20Z</dc:date>
    <item>
      <title>Azure Datacenter Object - VM, Subnet and VMSS only?</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/226030#M4952</link>
      <description>&lt;P&gt;Are there any plans to support importing application services?&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Reviewing:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_CloudGuard_Controller_AdminGuide/Topics-CGRDG/Supported-Data-Centers-Azure.htm" target="_blank" rel="noopener"&gt;CloudGuard Controller for Microsoft Azure (checkpoint.com)&lt;/A&gt;&lt;/P&gt;&lt;P&gt;States that we can&lt;SPAN&gt;&amp;nbsp;import VNETS, subnets,&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class=""&gt;Virtual Machines&lt;/SPAN&gt;&lt;SPAN&gt;, or&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class=""&gt;VMSS&lt;/SPAN&gt;&lt;SPAN&gt;. My org uses a ton of app services and i was hoping to use this datacenter import in place of updateable objects that include less specific ranges for azure services in a region.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 18:24:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/226030#M4952</guid>
      <dc:creator>Sam2</dc:creator>
      <dc:date>2024-09-09T18:24:28Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Datacenter Object - VM, Subnet and VMSS only?</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/226041#M4953</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/61698"&gt;@Sam2&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;Can you please provide a specific example?&amp;nbsp; It may be possible to improve Updatable Objects to get to the level of specificity you require.&amp;nbsp; In the meantime, have you taken a look at External Network Feeds?&amp;nbsp; That might fit the bill here.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Content/Topics-SECMG/Network_Feed.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Content/Topics-SECMG/Network_Feed.htm&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best Regards!&lt;/P&gt;
&lt;P&gt;Jeff&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 18:59:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/226041#M4953</guid>
      <dc:creator>Jeff_Engel</dc:creator>
      <dc:date>2024-09-09T18:59:21Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Datacenter Object - VM, Subnet and VMSS only?</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/226043#M4954</link>
      <description>&lt;P&gt;I am looking to import addresses listed in the networking section under a web app/app service in azure, i cannot share screenshots as they would be specific to my organization.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I can take a look at external network feeds.&lt;/P&gt;</description>
      <pubDate>Mon, 09 Sep 2024 19:01:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/226043#M4954</guid>
      <dc:creator>Sam2</dc:creator>
      <dc:date>2024-09-09T19:01:54Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Datacenter Object - VM, Subnet and VMSS only?</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/226089#M4958</link>
      <description>&lt;P&gt;As you mentioned , we can import dynamic objects from your Azure account like VMs, Subnets, vNets, tags etc.&lt;/P&gt;
&lt;P&gt;you need to follow the admin guide in order to create a DC center object of your azure subscription and this will allow you to pull these objects and use them in the rules as source or destination.&lt;/P&gt;</description>
      <pubDate>Tue, 10 Sep 2024 05:27:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/226089#M4958</guid>
      <dc:creator>Nir_Shamir</dc:creator>
      <dc:date>2024-09-10T05:27:54Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Datacenter Object - VM, Subnet and VMSS only?</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/226145#M4961</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/36840"&gt;@Sam&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;To import IPs from Azure web apps or app services, you can use the CloudGuard controller with tags applied to the app services. This will allow you to effectively populate the IP addresses.&lt;/P&gt;
&lt;P&gt;Please note that we do not currently support importing app services alone natively, which is why the Tag functionality is necessary.&lt;/P&gt;
&lt;P&gt;Best Regards,&lt;/P&gt;
&lt;P&gt;Dan Morris&lt;/P&gt;</description>
      <pubDate>Tue, 10 Sep 2024 13:26:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/226145#M4961</guid>
      <dc:creator>Dan_Morris</dc:creator>
      <dc:date>2024-09-10T13:26:58Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Datacenter Object - VM, Subnet and VMSS only?</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/228945#M4985</link>
      <description>&lt;P&gt;Hi Dan,&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I tagged the resources but the new tags are not showing in dashboard when i check the datacenter object, is there another step i need to take to get the tags to appear? I can see the subscription and the VMs in the resource group i am working on. Just missing the tags on the webapps.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 04 Oct 2024 15:27:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/228945#M4985</guid>
      <dc:creator>Sam2</dc:creator>
      <dc:date>2024-10-04T15:27:39Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Datacenter Object - VM, Subnet and VMSS only?</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/253690#M5419</link>
      <description>&lt;P&gt;Reviving this thread as its come up again for me.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I have a datacenter object with azure, it is connected using a service principal and working. I can open it up and see all my subscriptions, I can see virtual networks and all the supported azure resource&lt;BR /&gt;&lt;BR /&gt;As a test i created a new tag called "SamTag" i applied one version of this tag to a VM and another version of this tag to an App service. Refreshing my DC object for azure and looking in tags I can only see the tag that was applied to the VM, Is this expected behavior?&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 22 Jul 2025 15:56:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/253690#M5419</guid>
      <dc:creator>Sam2</dc:creator>
      <dc:date>2025-07-22T15:56:06Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Datacenter Object - VM, Subnet and VMSS only?</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/253781#M5424</link>
      <description>&lt;P&gt;Not supported on App service AFAIK.&lt;/P&gt;
&lt;P&gt;You can see supported resources here:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_CloudGuard_Controller_AdminGuide/Content/Topics-CGRDG/Supported-Data-Centers-Azure.htm?tocpath=Supported%20Data%20Centers%7CCloudGuard%20Controller%20for%20Microsoft%20Azure%7C_____0#CloudGuard_Controller_for_Microsoft_Azure" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_CloudGuard_Controller_AdminGuide/Content/Topics-CGRDG/Supported-Data-Centers-Azure.htm?tocpath=Supported%20Data%20Centers%7CCloudGuard%20Controller%20for%20Microsoft%20Azure%7C_____0#CloudGuard_Controller_for_Microsoft_Azure&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Jul 2025 13:04:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/253781#M5424</guid>
      <dc:creator>Amir_Senn</dc:creator>
      <dc:date>2025-07-23T13:04:04Z</dc:date>
    </item>
    <item>
      <title>Re: Azure Datacenter Object - VM, Subnet and VMSS only?</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/254181#M5434</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/61698"&gt;@Sam2&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;For the app services that you want to use in the security policy as data center object, would you like to inspect the traffic only for the public ip ?&lt;/P&gt;</description>
      <pubDate>Tue, 29 Jul 2025 10:47:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Azure-Datacenter-Object-VM-Subnet-and-VMSS-only/m-p/254181#M5434</guid>
      <dc:creator>noyerez</dc:creator>
      <dc:date>2025-07-29T10:47:20Z</dc:date>
    </item>
  </channel>
</rss>

