<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SSL Inspection over RDP in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87700#M10997</link>
    <description>&lt;P&gt;In HTTPS rulebase you can specify which software blade are involved in the inspection. If you want to check files transferred through RDP with AVI blade, that will work.&lt;/P&gt;
&lt;P&gt;You cannot do local AVI scans through the blade though on the remote RDP machine, if this is what you were looking for. However, if someone is transferring files to it, those files pass AVI scan on the GW&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 09 Jun 2020 07:12:59 GMT</pubDate>
    <dc:creator>_Val_</dc:creator>
    <dc:date>2020-06-09T07:12:59Z</dc:date>
    <item>
      <title>SSL Inspection over RDP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87645#M10996</link>
      <description>&lt;P&gt;I have successfully enabled https inspection over RDP following&amp;nbsp;&lt;SPAN&gt;sk154752.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;My wondering is what exactly you can “scan” in the RDP traffic?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;What I want to do is to scan for Virus when a user plug in a USB drive and transfer files from the client to the TS.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;is it possible? Or does that traffic get encapsulated somehow?&lt;/P&gt;</description>
      <pubDate>Mon, 08 Jun 2020 16:37:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87645#M10996</guid>
      <dc:creator>Andreas_Ahrnby</dc:creator>
      <dc:date>2020-06-08T16:37:27Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Inspection over RDP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87700#M10997</link>
      <description>&lt;P&gt;In HTTPS rulebase you can specify which software blade are involved in the inspection. If you want to check files transferred through RDP with AVI blade, that will work.&lt;/P&gt;
&lt;P&gt;You cannot do local AVI scans through the blade though on the remote RDP machine, if this is what you were looking for. However, if someone is transferring files to it, those files pass AVI scan on the GW&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Jun 2020 07:12:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87700#M10997</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2020-06-09T07:12:59Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Inspection over RDP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87727#M10998</link>
      <description>&lt;P&gt;Thanks for the reply, I have selected the AV blade but still my eicar test files don’t get intercepted.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;the client is connected to the RDP server and using usb redirection.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;on the RDP server I can see the usb drive with my test files and I can copy them to the desktop on the RDP server.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Jun 2020 12:21:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87727#M10998</guid>
      <dc:creator>Andreas_Ahrnby</dc:creator>
      <dc:date>2020-06-09T12:21:34Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Inspection over RDP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87754#M10999</link>
      <description>&lt;P&gt;Seems like a support case, please take it with TAC&lt;/P&gt;</description>
      <pubDate>Tue, 09 Jun 2020 14:06:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87754#M10999</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2020-06-09T14:06:57Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Inspection over RDP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87755#M11000</link>
      <description>&lt;P&gt;Which format are those files?&lt;/P&gt;</description>
      <pubDate>Tue, 09 Jun 2020 14:07:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87755#M11000</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2020-06-09T14:07:42Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Inspection over RDP</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87761#M11001</link>
      <description>&lt;P&gt;Eicar standard format, .com and zipped. It works if I just do regular SMB/Cifs transfer but the AV blade don’t stop them inside RDP.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Jun 2020 14:25:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/SSL-Inspection-over-RDP/m-p/87761#M11001</guid>
      <dc:creator>Andreas_Ahrnby</dc:creator>
      <dc:date>2020-06-09T14:25:48Z</dc:date>
    </item>
  </channel>
</rss>

