<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: can checkpoint possible block file transfer over RDP?  (disable clipboard) in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/150393#M24414</link>
    <description>&lt;P&gt;Is it possible to block using harmony endpoint?&lt;/P&gt;</description>
    <pubDate>Wed, 08 Jun 2022 07:20:47 GMT</pubDate>
    <dc:creator>Antonis_Hassiot</dc:creator>
    <dc:date>2022-06-08T07:20:47Z</dc:date>
    <item>
      <title>can checkpoint possible block file transfer over RDP?  (disable clipboard)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/119013#M16843</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;rdp can transfer file from server RDP to local laptop/pc. can checkpoint block only transfer file between server RDP with local laptop/pc.&lt;/P&gt;&lt;P&gt;i means normally rdp is we do rdp to server/pc and copy some file and paste to local pc/laptop is success, but i want block feature copy/paste on rdp.&lt;/P&gt;&lt;P&gt;thanks.&lt;/P&gt;</description>
      <pubDate>Fri, 21 May 2021 06:38:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/119013#M16843</guid>
      <dc:creator>rochim</dc:creator>
      <dc:date>2021-05-21T06:38:39Z</dc:date>
    </item>
    <item>
      <title>Re: can checkpoint possible block file transfer over RDP?  (disable clipboard)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/119014#M16844</link>
      <description>&lt;P&gt;I am not 100% sure if CP can block this, I think not. But I would still rather fix this in the RDP setup with a GPO or policy or something like that. That will also give you a bit more flexebility if, say, you want some of the sessions to be able to do this.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://serverfault.com/questions/1038954/how-to-block-filetransfer-through-rdp-port-3389" target="_blank"&gt;https://serverfault.com/questions/1038954/how-to-block-filetransfer-through-rdp-port-3389&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 May 2021 06:44:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/119014#M16844</guid>
      <dc:creator>vinceneil666</dc:creator>
      <dc:date>2021-05-21T06:44:46Z</dc:date>
    </item>
    <item>
      <title>Re: can checkpoint possible block file transfer over RDP?  (disable clipboard)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/119021#M16845</link>
      <description>&lt;P&gt;I don't have the possibility to test this for now but could Content Awareness help?&lt;/P&gt;&lt;P&gt;If you make a policy with RDP as service and create a data type with any file type in either direction. You'd have to have RDP inspection enabled in case you do encryption though.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;EDIT: Tried it but RDP is not in the list of supported protocols for Content Awareness, so it won't work.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 May 2021 08:17:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/119021#M16845</guid>
      <dc:creator>Alex-</dc:creator>
      <dc:date>2021-05-21T08:17:28Z</dc:date>
    </item>
    <item>
      <title>Re: can checkpoint possible block file transfer over RDP?  (disable clipboard)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/119188#M16864</link>
      <description>&lt;P&gt;Using Native RDP? No.&lt;BR /&gt;It is something we can definitely block when accessed through Harmony Connect (specifically the clientless access piece).&lt;BR /&gt;Believe you can also block it by accessing through Mobile Access Blade (using Guacamole).&lt;/P&gt;</description>
      <pubDate>Sun, 23 May 2021 15:51:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/119188#M16864</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-05-23T15:51:38Z</dc:date>
    </item>
    <item>
      <title>Re: can checkpoint possible block file transfer over RDP?  (disable clipboard)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/150393#M24414</link>
      <description>&lt;P&gt;Is it possible to block using harmony endpoint?&lt;/P&gt;</description>
      <pubDate>Wed, 08 Jun 2022 07:20:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/150393#M24414</guid>
      <dc:creator>Antonis_Hassiot</dc:creator>
      <dc:date>2022-06-08T07:20:47Z</dc:date>
    </item>
    <item>
      <title>Re: can checkpoint possible block file transfer over RDP?  (disable clipboard)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/150794#M24522</link>
      <description>&lt;P&gt;To answer my question, it seems possible to control clipboard access on Harmony Endpoint by "restricting" remote access when clipboard setting is enabled in RDP.&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is controlled by the following registry: HKLM/SOFTWARE\Microsoft\Terminal Server Client\DisableClipboardRedirection. Set REG_DWORD to 1 for disable, 0 for enable clipboard.&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can create a Compliance-&amp;gt;Applications/Files check -&amp;gt; Modify and check registry, input the above key name in the registry value name, check &lt;STRONG&gt;REG_DWORD&lt;/STRONG&gt; under "Reg type" and &lt;STRONG&gt;Exist&lt;/STRONG&gt; under "Check registry key and value".&amp;nbsp;&lt;/P&gt;&lt;P&gt;The problem is that it seems the compliance check, goes and checks the wrong registry location. I found that by selecting Action=Update. I found that it updated the following location:&amp;nbsp;HKLM/SOFTWARE\&lt;STRONG&gt;WOW6432Node\&lt;/STRONG&gt;Microsoft\Terminal Server Client\DisableClipboardRedirection. So it's adding&amp;nbsp;&lt;STRONG&gt;WOW6432Node&lt;/STRONG&gt; in the registry path.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Any idea on how to resolve this?&lt;/P&gt;</description>
      <pubDate>Tue, 14 Jun 2022 12:05:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/150794#M24522</guid>
      <dc:creator>Antonis_Hassiot</dc:creator>
      <dc:date>2022-06-14T12:05:18Z</dc:date>
    </item>
    <item>
      <title>Re: can checkpoint possible block file transfer over RDP?  (disable clipboard)</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/150986#M24581</link>
      <description>&lt;P&gt;Sounds like that might be worth a TAC case.&lt;/P&gt;</description>
      <pubDate>Wed, 15 Jun 2022 18:35:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/can-checkpoint-possible-block-file-transfer-over-RDP-disable/m-p/150986#M24581</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-06-15T18:35:25Z</dc:date>
    </item>
  </channel>
</rss>

