<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Traffic drop due to antispoofing- R80.10 in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-drop-due-to-antispoofing-R80-10/m-p/145925#M23095</link>
    <description>&lt;P&gt;Hi Andy,&lt;/P&gt;&lt;P&gt;Thanks for your response.&amp;nbsp;&lt;/P&gt;&lt;P&gt;For the don't check packets from option&lt;/P&gt;&lt;P&gt;A.do I need to perform any other action ?&lt;/P&gt;&lt;P&gt;B.will it effect my existing other traffic?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 11 Apr 2022 04:21:55 GMT</pubDate>
    <dc:creator>jamal_shah</dc:creator>
    <dc:date>2022-04-11T04:21:55Z</dc:date>
    <item>
      <title>Traffic drop due to antispoofing- R80.10</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-drop-due-to-antispoofing-R80-10/m-p/145915#M23089</link>
      <description>&lt;UL&gt;&lt;LI&gt;Traffic drop due to antispoofing- R80.10&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;I need urgent help please.&lt;/P&gt;&lt;P&gt;I have attached interface antispoof configuration setting on which I am getting antispoof drops in tracker.&lt;BR /&gt;All traffic is dropped from 2 specific servers on this interface.&lt;/P&gt;&lt;P&gt;All other traffic on this gateway is fine.&lt;/P&gt;</description>
      <pubDate>Sun, 10 Apr 2022 20:33:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-drop-due-to-antispoofing-R80-10/m-p/145915#M23089</guid>
      <dc:creator>jamal_shah</dc:creator>
      <dc:date>2022-04-10T20:33:22Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic drop due to antispoofing- R80.10</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-drop-due-to-antispoofing-R80-10/m-p/145917#M23090</link>
      <description>&lt;P&gt;As a workaround, set anti spoofing to either detect or disable it temporarily. Here is what I suggest as best practise...select "defined by routes", because otherwise, you always have to make sure 100% that subnets behind the interface are correct. With routes option, as long as routes are right, no need to worry. Now, since yours is for external, you can actually check option "dont check packets from" and add whatever is dropped there.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sun, 10 Apr 2022 21:17:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-drop-due-to-antispoofing-R80-10/m-p/145917#M23090</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-04-10T21:17:26Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic drop due to antispoofing- R80.10</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-drop-due-to-antispoofing-R80-10/m-p/145925#M23095</link>
      <description>&lt;P&gt;Hi Andy,&lt;/P&gt;&lt;P&gt;Thanks for your response.&amp;nbsp;&lt;/P&gt;&lt;P&gt;For the don't check packets from option&lt;/P&gt;&lt;P&gt;A.do I need to perform any other action ?&lt;/P&gt;&lt;P&gt;B.will it effect my existing other traffic?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Apr 2022 04:21:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-drop-due-to-antispoofing-R80-10/m-p/145925#M23095</guid>
      <dc:creator>jamal_shah</dc:creator>
      <dc:date>2022-04-11T04:21:55Z</dc:date>
    </item>
    <item>
      <title>Re: Traffic drop due to antispoofing- R80.10</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-drop-due-to-antispoofing-R80-10/m-p/145930#M23097</link>
      <description>&lt;P&gt;The option to define anti-spoofing by the routing table is only present from R80.20 and above.&lt;BR /&gt;The “don’t check packets from” option is the right one to use in this case.&lt;BR /&gt;It only disables the anti-spoof check for the specific hosts in question.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Apr 2022 06:48:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Traffic-drop-due-to-antispoofing-R80-10/m-p/145930#M23097</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-04-11T06:48:29Z</dc:date>
    </item>
  </channel>
</rss>

