<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Negating a specific object in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79923#M11458</link>
    <description>&lt;P&gt;It would look just like this, it allows my home lan to anything but the RFC1918 networks on any port but HTTP/HTTPS:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Negate.JPG" style="width: 1039px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/5180i1711B3D3F4ABCCC5/image-dimensions/1039x87?v=v2" width="1039" height="87" role="button" title="Negate.JPG" alt="Negate.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
    <pubDate>Fri, 27 Mar 2020 06:14:00 GMT</pubDate>
    <dc:creator>Maarten_Sjouw</dc:creator>
    <dc:date>2020-03-27T06:14:00Z</dc:date>
    <item>
      <title>Negating a specific object</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79860#M11451</link>
      <description>&lt;P&gt;I noticed that the option to negate a specific object is no long available in R80.xx, only available option is "negate cell"&lt;/P&gt;&lt;P&gt;I wonder why CheckPoint removed such a important feature.&lt;/P&gt;&lt;P&gt;I am simply trying to allow "any" but deny/negate "https" in the services cell, does anyone have a workaround?&lt;/P&gt;</description>
      <pubDate>Thu, 26 Mar 2020 19:49:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79860#M11451</guid>
      <dc:creator>donat5</dc:creator>
      <dc:date>2020-03-26T19:49:31Z</dc:date>
    </item>
    <item>
      <title>Re: Negating a specific object</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79869#M11452</link>
      <description>Negate the cell which in fact stops anything but what is in that cell.&lt;BR /&gt;It might be named a bit different but it still works the same.</description>
      <pubDate>Thu, 26 Mar 2020 21:50:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79869#M11452</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2020-03-26T21:50:26Z</dc:date>
    </item>
    <item>
      <title>Re: Negating a specific object</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79882#M11453</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/17364"&gt;@Maarten_Sjouw&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This even makes things more complicated; I would like to allow everything but https, how should my rule look like?&lt;/P&gt;&lt;P&gt;Any represents a lot of services which I cannot list.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Mar 2020 23:27:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79882#M11453</guid>
      <dc:creator>donat5</dc:creator>
      <dc:date>2020-03-26T23:27:11Z</dc:date>
    </item>
    <item>
      <title>Re: Negating a specific object</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79884#M11454</link>
      <description>&lt;P&gt;I think your only option is two rules&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;top rule - service https - action - drop&lt;/P&gt;&lt;P&gt;second rule allow any&lt;/P&gt;</description>
      <pubDate>Thu, 26 Mar 2020 23:40:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79884#M11454</guid>
      <dc:creator>Ryan_Ryan</dc:creator>
      <dc:date>2020-03-26T23:40:52Z</dc:date>
    </item>
    <item>
      <title>Re: Negating a specific object</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79888#M11455</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/14416"&gt;@Ryan_Ryan&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It seems so far the only option but why cp decided to get rid of such a good feature?&lt;/P&gt;&lt;P&gt;Now we end up with 2 rules instead of 1; I think checkpoint should reconsider putting this feature back.&lt;/P&gt;</description>
      <pubDate>Fri, 27 Mar 2020 00:09:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79888#M11455</guid>
      <dc:creator>donat5</dc:creator>
      <dc:date>2020-03-27T00:09:33Z</dc:date>
    </item>
    <item>
      <title>Re: Negating a specific object</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79891#M11456</link>
      <description>&lt;P&gt;No idea..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Its possible with network groups - create group with exclusion&lt;/P&gt;&lt;P&gt;seems there is no option to create service group with exclusion - you could have created a group containing tcp and udp 1-&lt;SPAN&gt;65535 and icmp and then exclude https. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;If you wanted a really&amp;nbsp;ugly solution you could create a group like above but with tcp range 1-442 and range 444-65535 group that together with udp range all ports and icmp.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Mar 2020 00:17:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79891#M11456</guid>
      <dc:creator>Ryan_Ryan</dc:creator>
      <dc:date>2020-03-27T00:17:09Z</dc:date>
    </item>
    <item>
      <title>Re: Negating a specific object</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79914#M11457</link>
      <description>&lt;P&gt;I've been using Check Point since version 2 and I'm pretty sure it was never allowed to negate a specific object in a cell with two or more items in it.&lt;/P&gt;
&lt;P&gt;Here's a snapshot from R77.30 where I'm selecting a specific object and I'm being offered "Negate Cell"&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2020-03-26 at 9.12.06 PM.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/5177i62A62A2BCCDC4E64/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screen Shot 2020-03-26 at 9.12.06 PM.png" alt="Screen Shot 2020-03-26 at 9.12.06 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;And it shows like this when negated.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2020-03-26 at 9.18.56 PM.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/5178iE4251C87CF083E5B/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screen Shot 2020-03-26 at 9.18.56 PM.png" alt="Screen Shot 2020-03-26 at 9.18.56 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Visually, it looks a little different in R80.x:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2020-03-26 at 9.13.50 PM.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/5179i04007C58AECDB8D0/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screen Shot 2020-03-26 at 9.13.50 PM.png" alt="Screen Shot 2020-03-26 at 9.13.50 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;In either case, the effect is the same.&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 27 Mar 2020 04:26:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79914#M11457</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-03-27T04:26:09Z</dc:date>
    </item>
    <item>
      <title>Re: Negating a specific object</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79923#M11458</link>
      <description>&lt;P&gt;It would look just like this, it allows my home lan to anything but the RFC1918 networks on any port but HTTP/HTTPS:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Negate.JPG" style="width: 1039px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/5180i1711B3D3F4ABCCC5/image-dimensions/1039x87?v=v2" width="1039" height="87" role="button" title="Negate.JPG" alt="Negate.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 27 Mar 2020 06:14:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79923#M11458</guid>
      <dc:creator>Maarten_Sjouw</dc:creator>
      <dc:date>2020-03-27T06:14:00Z</dc:date>
    </item>
    <item>
      <title>Re: Negating a specific object</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79971#M11459</link>
      <description>&lt;P&gt;Oh...then I misunderstood&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/17364"&gt;@Maarten_Sjouw&lt;/a&gt;&amp;nbsp;explaination and thought that everything in the cell is allowed and the rest dropped. This makes sense now, thanks&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Mar 2020 14:12:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Negating-a-specific-object/m-p/79971#M11459</guid>
      <dc:creator>donat5</dc:creator>
      <dc:date>2020-03-27T14:12:53Z</dc:date>
    </item>
  </channel>
</rss>

