<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Having a hard time redirecting Youtube requests on Gaia 80.20 VSX in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83452#M11230</link>
    <description>&lt;P&gt;Good morning everyone,&lt;/P&gt;&lt;P&gt;One of my clients would like to block a small amount of websites and redirect those requests to a custom page. We implemented this last week and all website work like a charm except for one: Youtube.&lt;/P&gt;&lt;P&gt;Parts of the page are still allowed and I can't figure out a way to properly redirect Youtube like the other pages. I know it could have something to do with SSL certificates coming from Google.com (which is not blocked) so it's difficult to block all of them.&lt;/P&gt;&lt;P&gt;We are using HTTPS Inspection to inspect the traffic. If I test on my own machine I see all my traffic in my requests getting inspected but my browser keeps loading a half working Youtube website. The weird thing is that sometimes redirect works in Edge but when i go to youtube.com in Chrome and then refresh in Edge the page loads in both browsers. How is this possible?&lt;/P&gt;&lt;P&gt;Summarized:&lt;/P&gt;&lt;P&gt;- Environment is running on Gaia 80.20 (VSX)&lt;/P&gt;&lt;P&gt;- HTTPS Inspection is enabled&lt;/P&gt;&lt;P&gt;- All redirects work except for Youtube.&lt;/P&gt;&lt;P&gt;- We are using the "Youtube" object in the application policy to drop traffic, tested with URL as well but gave same result.&lt;/P&gt;&lt;P&gt;- Upgrading to 80.30 0r .40 is not an option since that failed multiple times even with TAC assistance.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 28 Apr 2020 08:06:07 GMT</pubDate>
    <dc:creator>JordyMandera</dc:creator>
    <dc:date>2020-04-28T08:06:07Z</dc:date>
    <item>
      <title>Having a hard time redirecting Youtube requests on Gaia 80.20 VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83452#M11230</link>
      <description>&lt;P&gt;Good morning everyone,&lt;/P&gt;&lt;P&gt;One of my clients would like to block a small amount of websites and redirect those requests to a custom page. We implemented this last week and all website work like a charm except for one: Youtube.&lt;/P&gt;&lt;P&gt;Parts of the page are still allowed and I can't figure out a way to properly redirect Youtube like the other pages. I know it could have something to do with SSL certificates coming from Google.com (which is not blocked) so it's difficult to block all of them.&lt;/P&gt;&lt;P&gt;We are using HTTPS Inspection to inspect the traffic. If I test on my own machine I see all my traffic in my requests getting inspected but my browser keeps loading a half working Youtube website. The weird thing is that sometimes redirect works in Edge but when i go to youtube.com in Chrome and then refresh in Edge the page loads in both browsers. How is this possible?&lt;/P&gt;&lt;P&gt;Summarized:&lt;/P&gt;&lt;P&gt;- Environment is running on Gaia 80.20 (VSX)&lt;/P&gt;&lt;P&gt;- HTTPS Inspection is enabled&lt;/P&gt;&lt;P&gt;- All redirects work except for Youtube.&lt;/P&gt;&lt;P&gt;- We are using the "Youtube" object in the application policy to drop traffic, tested with URL as well but gave same result.&lt;/P&gt;&lt;P&gt;- Upgrading to 80.30 0r .40 is not an option since that failed multiple times even with TAC assistance.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Apr 2020 08:06:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83452#M11230</guid>
      <dc:creator>JordyMandera</dc:creator>
      <dc:date>2020-04-28T08:06:07Z</dc:date>
    </item>
    <item>
      <title>Re: Having a hard time redirecting Youtube requests on Gaia 80.20 VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83528#M11231</link>
      <description>How about leveraging a recent R80.20 JHF with SNI support?&lt;BR /&gt;That should help as far as at least blocking.&lt;BR /&gt;&lt;BR /&gt;Curious what were the failures to upgrade to R80.30/.40?&lt;BR /&gt;Perhaps start a seperate thread on this subject.</description>
      <pubDate>Tue, 28 Apr 2020 18:48:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83528#M11231</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-04-28T18:48:51Z</dc:date>
    </item>
    <item>
      <title>Re: Having a hard time redirecting Youtube requests on Gaia 80.20 VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83574#M11232</link>
      <description>&lt;P&gt;We are running this environment on R80.20 Jumbo HF 141.&lt;/P&gt;&lt;P&gt;The problems with R80.30 are related to overexceptional CPU usage on the fw_worker which runs multiple software blades like Firewall, Application Control, URL Filtering, Anti-Bot and Anti-Virus. After about 30 minutes to 1 hour the CPU load freaks out and cuts internet connections. It are 12400 VSX Gateways.&lt;/P&gt;&lt;P&gt;TAC did provide several custom hotfixes after sending in a dozen cpinfo's but nothing helped to cure the problem and I had to rollback 2 times to R80.20 already. Looking to replace the whole stack now with something more next-gen like the 6000 series.&lt;/P&gt;&lt;P&gt;But for now I would like to address the Youtube problem.&lt;/P&gt;</description>
      <pubDate>Wed, 29 Apr 2020 07:38:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83574#M11232</guid>
      <dc:creator>JordyMandera</dc:creator>
      <dc:date>2020-04-29T07:38:57Z</dc:date>
    </item>
    <item>
      <title>Re: Having a hard time redirecting Youtube requests on Gaia 80.20 VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83581#M11233</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Does the behavior in Chrome change with QUIC disabled/blocked?&lt;/P&gt;</description>
      <pubDate>Wed, 29 Apr 2020 08:21:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83581#M11233</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2020-04-29T08:21:54Z</dc:date>
    </item>
    <item>
      <title>Re: Having a hard time redirecting Youtube requests on Gaia 80.20 VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83605#M11234</link>
      <description>Just tested this and it doesn't change the behavior when I disable QUIC in Chrome. Another test in Edge gave me a redirect to UserCheck two times and in the third tabblad I was able to open up a partly functioning Youtube. It really seems that something keeps slipping through.</description>
      <pubDate>Wed, 29 Apr 2020 11:09:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83605#M11234</guid>
      <dc:creator>JordyMandera</dc:creator>
      <dc:date>2020-04-29T11:09:33Z</dc:date>
    </item>
    <item>
      <title>Re: Having a hard time redirecting Youtube requests on Gaia 80.20 VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83675#M11235</link>
      <description>SNI support was added in Take 117, so you're good there.&lt;BR /&gt;&lt;BR /&gt;Most likely some part of the traffic is getting accepted on an earlier rule that doesn't quite classify as YouTube.&lt;BR /&gt;We'd have to see the rulebase for sure.&lt;BR /&gt;Also, what bypass rules do you have in place for HTTPS inspection?</description>
      <pubDate>Thu, 30 Apr 2020 00:47:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/83675#M11235</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-04-30T00:47:50Z</dc:date>
    </item>
    <item>
      <title>Re: Having a hard time redirecting Youtube requests on Gaia 80.20 VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/84321#M11236</link>
      <description>&lt;P&gt;Posting the rulebase of one of my clients to the public internet doens't give me a great feeling to be honest. But i'll do my best to explain what's configured at the moment in HTTPS inspection and Application Control:&lt;/P&gt;&lt;P&gt;#1&lt;/P&gt;&lt;P&gt;Source: Network Group with hosts we want to block access to certain websites including Youtube&lt;/P&gt;&lt;P&gt;Destination: Internet&lt;/P&gt;&lt;P&gt;Services: HTTPS &amp;amp; HTTP_HTTPS_Proxy&lt;/P&gt;&lt;P&gt;Site Category: Custom Application/Site we created with all domains we want to block&lt;/P&gt;&lt;P&gt;Action: Inspect&lt;/P&gt;&lt;P&gt;#2&lt;/P&gt;&lt;P&gt;Source: RFC1918 networks&lt;/P&gt;&lt;P&gt;Destination: Internet&lt;/P&gt;&lt;P&gt;Services: HTTPS&lt;/P&gt;&lt;P&gt;Site Category: Financial Services &amp;amp; Custom Application/Site we created with domains we want to bypass inspection&lt;/P&gt;&lt;P&gt;Action: Bypass&lt;/P&gt;&lt;P&gt;#3&lt;/P&gt;&lt;P&gt;Source: RFC1918 Networks&lt;/P&gt;&lt;P&gt;Destination: Internet&lt;/P&gt;&lt;P&gt;Services: HTTPS&lt;/P&gt;&lt;P&gt;Site Category: Any&lt;/P&gt;&lt;P&gt;Action: Inspect&lt;/P&gt;&lt;P&gt;#4&lt;/P&gt;&lt;P&gt;Source: Any&lt;/P&gt;&lt;P&gt;Destination: Any&lt;/P&gt;&lt;P&gt;Services: HTTPS/HTTPS Proxy&lt;/P&gt;&lt;P&gt;Site Category: Any&lt;/P&gt;&lt;P&gt;Action: Bypass&lt;/P&gt;&lt;P&gt;Log: None&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This setup works for all URLs except for Youtube. Sometimes it redirects on first attempt but when I open a second tab in the browser the website kind of opens with a lot of elements getting blocked. It's not functioning but I prefer a proper redirect page instead. All other URLs we put into the block application/site group work fine and redirect correctly on every attempt.&lt;/P&gt;&lt;P&gt;I've gone through the bypass groups multiple times to figure out where stuff gets bypassed and I can't find anything that would allow Youtube to open.&lt;/P&gt;</description>
      <pubDate>Wed, 06 May 2020 08:11:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/84321#M11236</guid>
      <dc:creator>JordyMandera</dc:creator>
      <dc:date>2020-05-06T08:11:36Z</dc:date>
    </item>
    <item>
      <title>Re: Having a hard time redirecting Youtube requests on Gaia 80.20 VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/84405#M11237</link>
      <description>YouTube loads a lot of content from things that aren't youtube.com.&lt;BR /&gt;I suspect that content is being allowed and you need to include additional domains in your INSPECT rule.</description>
      <pubDate>Thu, 07 May 2020 04:58:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/84405#M11237</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-05-07T04:58:44Z</dc:date>
    </item>
    <item>
      <title>Re: Having a hard time redirecting Youtube requests on Gaia 80.20 VSX</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/84804#M11238</link>
      <description>Me and our 3rd party service provider can not figure out where the issue is at. We decided to open a TAC case to do some more investigation. I'll keep you posted.</description>
      <pubDate>Mon, 11 May 2020 07:40:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Having-a-hard-time-redirecting-Youtube-requests-on-Gaia-80-20/m-p/84804#M11238</guid>
      <dc:creator>JordyMandera</dc:creator>
      <dc:date>2020-05-11T07:40:53Z</dc:date>
    </item>
  </channel>
</rss>

