<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: skype for business issues in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/57227#M12825</link>
    <description>&lt;P&gt;The missing STUN support as well as the mentioned sk are very very old, from&amp;nbsp;&lt;SPAN&gt;04-Mär-2008 ! Also consult&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108815&amp;amp;partition=Advanced&amp;amp;product=Small" target="_blank" rel="noopener"&gt;sk108815: Basic VoIP debugging when phones located behind firewall and PBX is external&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN&gt;,&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk113573&amp;amp;partition=General&amp;amp;product=Small" target="_blank"&gt;sk113573: How to configure VoIP on Locally Managed 600 / 700 / 910 / 1100 / 1200R / 1400 appliances&lt;/A&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;and&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk112354&amp;amp;partition=Advanced&amp;amp;product=Application" target="_blank" rel="noopener"&gt;sk112354: How to allow Office 365 services in Application Control R77.30 and above&lt;/A&gt; !&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 02 Jul 2019 11:04:32 GMT</pubDate>
    <dc:creator>G_W_Albrecht</dc:creator>
    <dc:date>2019-07-02T11:04:32Z</dc:date>
    <item>
      <title>skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53126#M12814</link>
      <description>&lt;P&gt;&lt;BR /&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am facing an issue where VOIP calls from our Polycom device to Skype for business online are dropped after about 1 minute.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The drops are one-way (incoming voice) which looks like the incoming SIP traffic is dropped.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The topology is quite simple:&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Polycom --&amp;gt; CP GW --&amp;gt; Internet --&amp;gt; Skype for Business online&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;some insights:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1. the problem doesn't occur when connecting the Polycom directly to the internet via a hotspot. so it is a Check point issue&amp;nbsp;&lt;/P&gt;&lt;P&gt;2. issue still occurs when disabling SecureXL so it is not a SXL issue&amp;nbsp;&lt;/P&gt;&lt;P&gt;3. Hide NAT changes source port for SIP over UDP IP is checked in inspection settings&amp;nbsp;&lt;/P&gt;&lt;P&gt;4. No IPS drops on VOIP. The Polycom IP is excluded from IPS and &lt;U&gt;all&lt;/U&gt; inspection settings&amp;nbsp;&lt;/P&gt;&lt;P&gt;5. we see incoming connections from the Skype for business online IP range are blocked by the stealth rule&amp;nbsp;&lt;/P&gt;&lt;P&gt;the last point made me think that it might be a NAT issue with SIP ports range (outgoing connections are NATed but incoming connections are not recognized by the firewall as part of the same connection)&lt;/P&gt;&lt;P&gt;I see the following drops coming from Skype for business online IP range to the GW external IP address&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="photos.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1142iBD9F7DF79503C29D/image-size/large?v=v2&amp;amp;px=999" role="button" title="photos.png" alt="photos.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My questions are:&lt;/P&gt;&lt;P&gt;Are there any best practices to configure Skype for business with Check Point&amp;nbsp;&lt;/P&gt;&lt;P&gt;What is the recommendation for NAT with SIP?&lt;/P&gt;&lt;P&gt;Any insights on how to solve this issue&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 10 May 2019 13:14:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53126#M12814</guid>
      <dc:creator>Shahar_Grober</dc:creator>
      <dc:date>2019-05-10T13:14:03Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53131#M12815</link>
      <description>&lt;P&gt;hi mate&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;be4 we can give you a hint maybe first introduce your CP GW to us?&lt;/P&gt;
&lt;P&gt;what is the os build ? best put here cpinfo -y all so we can advise accordingly.&lt;/P&gt;
&lt;P&gt;imho this isn't about the NAT but either IPS or SecureXL (PXL?) but let's make a first things first.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;versions matters !&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 10 May 2019 13:37:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53131#M12815</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2019-05-10T13:37:39Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53135#M12816</link>
      <description>R80.10 T_189&lt;BR /&gt;&lt;BR /&gt;as I said IPS protections are excluded + the issue occurs when SecureXL is disabled so it looks like it is</description>
      <pubDate>Fri, 10 May 2019 13:45:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53135#M12816</guid>
      <dc:creator>Shahar_Grober</dc:creator>
      <dc:date>2019-05-10T13:45:46Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53187#M12817</link>
      <description>VoIP Protections are not IPS but they are enforced in the firewall via the Inspection Settings.&lt;BR /&gt;Have you excluded these as well?&lt;BR /&gt;</description>
      <pubDate>Sat, 11 May 2019 00:51:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53187#M12817</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-05-11T00:51:50Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53201#M12818</link>
      <description>&lt;P&gt;I have mentioned that I have configured both IPS and Inspection exceptions just to make sure that the traffic is not dropped.&lt;BR /&gt;&lt;BR /&gt;It looks like a NAT issue with UDP SIP Ports which make the returning connections not to be NATed and dropped by the stealth rule.&lt;/P&gt;&lt;P&gt;I have configured the following rule as follow:&lt;/P&gt;&lt;TABLE border="1"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD&gt;src&lt;/TD&gt;&lt;TD&gt;dst&lt;/TD&gt;&lt;TD&gt;service&lt;/TD&gt;&lt;TD&gt;action&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD&gt;polycom with SFB&lt;/TD&gt;&lt;TD&gt;any&lt;/TD&gt;&lt;TD&gt;any&lt;/TD&gt;&lt;TD&gt;allow&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hide NAT is configured on the Polycom object&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Did anyone have experience with how to configure NAT and Skype for business (And Yes, I have already involved TAC but I need a quick solution from someone with experience with such configuration)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 11 May 2019 14:11:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53201#M12818</guid>
      <dc:creator>Shahar_Grober</dc:creator>
      <dc:date>2019-05-11T14:11:52Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53894#M12819</link>
      <description>&lt;P&gt;Running the same kind of issue. Workarround found with the TAC: Disable the "cluster sync" for those UDP ports. Seems a bug is deleting UDP virtual sessions.&lt;/P&gt;&lt;P&gt;You should see drops for returning traffic (seen wrongly as new traffic) in your management logs or in fw ctl zdebug + drop | grep "IP of your RTP device".&lt;/P&gt;&lt;P&gt;Waiting a real fix from the CKP DEV team.&lt;/P&gt;</description>
      <pubDate>Mon, 20 May 2019 14:26:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/53894#M12819</guid>
      <dc:creator>infosec</dc:creator>
      <dc:date>2019-05-20T14:26:19Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/54193#M12820</link>
      <description>&lt;P&gt;Actually, the problem is with STUN protocol used by Skype for Business but not supported by Check Point&amp;nbsp;&lt;/P&gt;&lt;P&gt;according to&amp;nbsp;sk34538, which "suddenly" popped up in User Center&amp;nbsp;&lt;/P&gt;&lt;P&gt;"Check Point Security Gateway does&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;not&lt;/EM&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;support&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A href="https://en.wikipedia.org/wiki/STUN" target="_blank" rel="noopener"&gt;Session Traversal Utilities for NAT (STUN) server&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;Check Point Security Gateway&amp;nbsp;will pass and forward STUN traffic, &lt;FONT size="5"&gt;but will not reply to STUN requests sent to the&amp;nbsp;Check Point Security Gateway.&lt;/FONT&gt;"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This requires to create manual rules to allow STUN traffic to traverse the GW or else they will be blocked by the stealth rule because the GW doesn't NAT this service&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Skype for business is a widely used service. How come Check Point doesn't support it&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/1249"&gt;@Dima_M&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;WDYT?&lt;/P&gt;</description>
      <pubDate>Thu, 23 May 2019 07:33:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/54193#M12820</guid>
      <dc:creator>Shahar_Grober</dc:creator>
      <dc:date>2019-05-23T07:33:27Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/54283#M12821</link>
      <description>STUN is meant to work around NAT.&lt;BR /&gt;However, it usually runs on the SIP proxy/server.&lt;BR /&gt;If we're not the SIP proxy, not sure how we'd support STUN beyond just manually mapping NAT ports.&lt;BR /&gt;&lt;BR /&gt;In any case, the fact we don't proxy STUN at all, only pass it through, isn't particularly new.&lt;BR /&gt;The SK you mention was first created in 2008.</description>
      <pubDate>Thu, 23 May 2019 22:25:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/54283#M12821</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-05-23T22:25:34Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/54304#M12822</link>
      <description>The SK was not public and suddenly appeared in User Center (was edited in 13 may 2019).&lt;BR /&gt;SIP proxy servers are nice but they are overkill when you have Skype for business in cloud and Polycom devices with out of the box functionality to talk to MS cloud.&lt;BR /&gt;</description>
      <pubDate>Fri, 24 May 2019 08:03:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/54304#M12822</guid>
      <dc:creator>Shahar_Grober</dc:creator>
      <dc:date>2019-05-24T08:03:37Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/57200#M12823</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/28277"&gt;@infosec&lt;/a&gt;, could you please share SR number so we can check if the sympthoms we have are the same as on your side?&lt;BR /&gt;&lt;BR /&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2019 08:51:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/57200#M12823</guid>
      <dc:creator>Mark_Gurevich</dc:creator>
      <dc:date>2019-07-02T08:51:43Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/57219#M12824</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/27485"&gt;@Shahar_Grober&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;It is the old known SIP/RTP issue.&lt;/P&gt;
&lt;P&gt;I think it is the same issue:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/Enterprise-Appliances-and-Gaia/VoIP-Issue-and-SMB-Appliance-600-1000-1200-1400/m-p/40613/highlight/true#M3375" target="_self"&gt;VoIP Issue and SMB Appliance (600/1000/1200/1400)&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2019 08:46:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/57219#M12824</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2019-07-02T08:46:14Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/57227#M12825</link>
      <description>&lt;P&gt;The missing STUN support as well as the mentioned sk are very very old, from&amp;nbsp;&lt;SPAN&gt;04-Mär-2008 ! Also consult&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk108815&amp;amp;partition=Advanced&amp;amp;product=Small" target="_blank" rel="noopener"&gt;sk108815: Basic VoIP debugging when phones located behind firewall and PBX is external&lt;/A&gt;&lt;/SPAN&gt;&lt;SPAN&gt;,&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk113573&amp;amp;partition=General&amp;amp;product=Small" target="_blank"&gt;sk113573: How to configure VoIP on Locally Managed 600 / 700 / 910 / 1100 / 1200R / 1400 appliances&lt;/A&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;and&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk112354&amp;amp;partition=Advanced&amp;amp;product=Application" target="_blank" rel="noopener"&gt;sk112354: How to allow Office 365 services in Application Control R77.30 and above&lt;/A&gt; !&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jul 2019 11:04:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/57227#M12825</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2019-07-02T11:04:32Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/61219#M12826</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Here is the ticket id :&amp;nbsp;6-0001628443&lt;/P&gt;&lt;P&gt;Note: This was a general UDP issue (random delete fromsession table for UDP sessions in hide nat). Impacted other UDP (les critical) traffic like openVPN. Issue gone without any update finally... Very strange issue.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Mon, 26 Aug 2019 09:51:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/61219#M12826</guid>
      <dc:creator>infosec</dc:creator>
      <dc:date>2019-08-26T09:51:50Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/61646#M12827</link>
      <description>Thanks for sharing! Same steps has solved the issue on our side</description>
      <pubDate>Mon, 02 Sep 2019 13:50:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/61646#M12827</guid>
      <dc:creator>Mark_Gurevich</dc:creator>
      <dc:date>2019-09-02T13:50:22Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/64985#M12828</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we are also facing the same Problem for stun .we have seen drops from Microsoft to gateway IP on the same source and destination Port which is 3478.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;so anyone please tell me what we should do for this as users are facing skype call drops issue.&lt;/P&gt;</description>
      <pubDate>Tue, 15 Oct 2019 08:28:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/64985#M12828</guid>
      <dc:creator>upmitnetworksec</dc:creator>
      <dc:date>2019-10-15T08:28:57Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/70667#M12829</link>
      <description>Hello,&lt;BR /&gt;&lt;BR /&gt;Have exactly the same issue with Teams, i've try to disable the cluster Sync on my UDP3478-3481 port, check the keep connection open after policy installation... same issue.&lt;BR /&gt;&lt;BR /&gt;Any idea ?</description>
      <pubDate>Tue, 17 Dec 2019 13:51:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/70667#M12829</guid>
      <dc:creator>Equipe_Reseau2</dc:creator>
      <dc:date>2019-12-17T13:51:49Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/70668#M12830</link>
      <description>sk34538&lt;BR /&gt;you have to bypass it by allowing this port explicitly since it is not NATed by the GW</description>
      <pubDate>Tue, 17 Dec 2019 13:54:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/70668#M12830</guid>
      <dc:creator>Shahar_Grober</dc:creator>
      <dc:date>2019-12-17T13:54:56Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/70675#M12831</link>
      <description>Thanks, you mean i need to allow Microsoft 52.114.0.0/14 to allow my Public IP on UDP3478 and more ???</description>
      <pubDate>Tue, 17 Dec 2019 14:16:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/70675#M12831</guid>
      <dc:creator>Equipe_Reseau2</dc:creator>
      <dc:date>2019-12-17T14:16:36Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/70676#M12832</link>
      <description>Yes, you can use updateable objects if you use R80.20</description>
      <pubDate>Tue, 17 Dec 2019 14:18:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/70676#M12832</guid>
      <dc:creator>Shahar_Grober</dc:creator>
      <dc:date>2019-12-17T14:18:38Z</dc:date>
    </item>
    <item>
      <title>Re: skype for business issues</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/70677#M12833</link>
      <description>No, i'm in R80.10 T225. I have Application filtering so i've allow Stun Application, it match but i always have drop UDP inbound sessions.&lt;BR /&gt;I have UDP 10400, 10500, 10600.... not only 3478 !! I can't allow that !!</description>
      <pubDate>Tue, 17 Dec 2019 14:24:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/skype-for-business-issues/m-p/70677#M12833</guid>
      <dc:creator>Equipe_Reseau2</dc:creator>
      <dc:date>2019-12-17T14:24:41Z</dc:date>
    </item>
  </channel>
</rss>

