<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Limit outbound HTTPS on servers using ADSync / Azure ARC / Akamai in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Limit-outbound-HTTPS-on-servers-using-ADSync-Azure-ARC-Akamai/m-p/139938#M21422</link>
    <description>&lt;P&gt;Hi Ilya,&lt;/P&gt;&lt;P&gt;This is the complete list of updatable objects on my firewall:&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cp.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/15161iA5948B80EA575FF9/image-size/medium?v=v2&amp;amp;px=400" role="button" title="cp.PNG" alt="cp.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I was looking for an application / service to allow these services with source:Internet, but I guess the correct thing to do is to use the above Windows / Microsoft updatable objects as source?&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;Best,&lt;/P&gt;&lt;P&gt;Nils&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 30 Jan 2022 16:45:56 GMT</pubDate>
    <dc:creator>NilsKS</dc:creator>
    <dc:date>2022-01-30T16:45:56Z</dc:date>
    <item>
      <title>Limit outbound HTTPS on servers using ADSync / Azure ARC / Akamai</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Limit-outbound-HTTPS-on-servers-using-ADSync-Azure-ARC-Akamai/m-p/139916#M21418</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Check Point FW-1 R81.10.&lt;/P&gt;&lt;P&gt;I am in the process of implementing application rules to control/limit outbound http/https. Have this up and running for most Windows servers, but I am struggling with servers monitored by Azure ARC and servers running ADsync.&lt;/P&gt;&lt;P&gt;I have allowed the following services / application in the application rulebase:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cp.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/15158i4BED26A89F284A16/image-size/medium?v=v2&amp;amp;px=400" role="button" title="cp.PNG" alt="cp.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I still see lots of HTTP/HTTPS traffic to Microsoft Azure IP-addresses, but I am not able to find any (dymnamic) objects that includes Azure services /Azure ARC, ADsync).&lt;/P&gt;&lt;P&gt;Are there any Check Point objects that includes the Microsoft Azure IP addresses used for these services?? &lt;/P&gt;&lt;P&gt;The same goes for Akamai HTTPS services. How to whitelist those??&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Nils&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 30 Jan 2022 12:36:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Limit-outbound-HTTPS-on-servers-using-ADSync-Azure-ARC-Akamai/m-p/139916#M21418</guid>
      <dc:creator>NilsKS</dc:creator>
      <dc:date>2022-01-30T12:36:30Z</dc:date>
    </item>
    <item>
      <title>Re: Limit outbound HTTPS on servers using ADSync / Azure ARC / Akamai</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Limit-outbound-HTTPS-on-servers-using-ADSync-Azure-ARC-Akamai/m-p/139929#M21421</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/34744"&gt;@NilsKS&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We do have updatable objects that address your requirement, did you tried it?&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;Please let me know if it's indeed answer your question or you are looking for something else.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Ilya&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 30 Jan 2022 13:20:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Limit-outbound-HTTPS-on-servers-using-ADSync-Azure-ARC-Akamai/m-p/139929#M21421</guid>
      <dc:creator>Ilya_Yusupov</dc:creator>
      <dc:date>2022-01-30T13:20:27Z</dc:date>
    </item>
    <item>
      <title>Re: Limit outbound HTTPS on servers using ADSync / Azure ARC / Akamai</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Limit-outbound-HTTPS-on-servers-using-ADSync-Azure-ARC-Akamai/m-p/139938#M21422</link>
      <description>&lt;P&gt;Hi Ilya,&lt;/P&gt;&lt;P&gt;This is the complete list of updatable objects on my firewall:&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cp.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/15161iA5948B80EA575FF9/image-size/medium?v=v2&amp;amp;px=400" role="button" title="cp.PNG" alt="cp.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I was looking for an application / service to allow these services with source:Internet, but I guess the correct thing to do is to use the above Windows / Microsoft updatable objects as source?&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;Best,&lt;/P&gt;&lt;P&gt;Nils&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 30 Jan 2022 16:45:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Limit-outbound-HTTPS-on-servers-using-ADSync-Azure-ARC-Akamai/m-p/139938#M21422</guid>
      <dc:creator>NilsKS</dc:creator>
      <dc:date>2022-01-30T16:45:56Z</dc:date>
    </item>
    <item>
      <title>Re: Limit outbound HTTPS on servers using ADSync / Azure ARC / Akamai</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Limit-outbound-HTTPS-on-servers-using-ADSync-Azure-ARC-Akamai/m-p/139939#M21423</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/34744"&gt;@NilsKS&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i will take it with you offline as the list is not completed so i'm trying to understand what's went wrong there.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Ilya&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 30 Jan 2022 16:56:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Limit-outbound-HTTPS-on-servers-using-ADSync-Azure-ARC-Akamai/m-p/139939#M21423</guid>
      <dc:creator>Ilya_Yusupov</dc:creator>
      <dc:date>2022-01-30T16:56:52Z</dc:date>
    </item>
    <item>
      <title>Re: Limit outbound HTTPS on servers using ADSync / Azure ARC / Akamai</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Limit-outbound-HTTPS-on-servers-using-ADSync-Azure-ARC-Akamai/m-p/140015#M21440</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Updating the thread, we saw 2 issues:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1. There is a known issue of some occasions that the package will not get updates and we have a fix that is not yet released in the Jumbo, should be in the future JHF release.&lt;/P&gt;
&lt;P&gt;2. UI issue, where we tried to add object via right click add new items, in such flow most of the time the picker of updatable objects will not be opened, a bug that we will take it with RnD to solve.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you very much for your feedback and time&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/34744"&gt;@NilsKS&lt;/a&gt;&amp;nbsp;.&lt;/P&gt;</description>
      <pubDate>Mon, 31 Jan 2022 16:21:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Limit-outbound-HTTPS-on-servers-using-ADSync-Azure-ARC-Akamai/m-p/140015#M21440</guid>
      <dc:creator>Ilya_Yusupov</dc:creator>
      <dc:date>2022-01-31T16:21:04Z</dc:date>
    </item>
  </channel>
</rss>

