<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: block port 443 and 80 and 18264 on checkpoint external firewall in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/80080#M27397</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/30055"&gt;@Ana_11&lt;/a&gt;;&lt;/P&gt;
&lt;P&gt;THX to&amp;nbsp;&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/11879"&gt;@Vladimir&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;Here the solution: Add an static NAT rule and NAT it to null IP:-)&lt;/P&gt;
&lt;P&gt;src: internet&lt;BR /&gt;&lt;SPAN style="font-family: inherit;"&gt;dst: portal ip&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="font-family: inherit;"&gt;port: portal port&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="font-family: inherit;"&gt;NAT src: internet&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="font-family: inherit;"&gt;NAT dst: static NAT to null IP for example 127.0.0.99&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="font-family: inherit;"&gt;NAT port: portal port&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Sat, 28 Mar 2020 20:33:01 GMT</pubDate>
    <dc:creator>HeikoAnkenbrand</dc:creator>
    <dc:date>2020-03-28T20:33:01Z</dc:date>
    <item>
      <title>block port 443 and 80 and 18264 on checkpoint external firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/80059#M27394</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;Can someone tell how to block port 443. port 80.port 18264 on external interface of checkpoint firewall&lt;/P&gt;</description>
      <pubDate>Sat, 28 Mar 2020 11:23:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/80059#M27394</guid>
      <dc:creator>Ana_11</dc:creator>
      <dc:date>2020-03-28T11:23:07Z</dc:date>
    </item>
    <item>
      <title>Re: block port 443 and 80 and 18264 on checkpoint external firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/80061#M27395</link>
      <description>&lt;P&gt;You'd have to change the management port in Gaia, individual default portal ports in the properties of the gateway, manually define explicit rules for management access on top of your security policy, change Global Properties properties by disabling Implied Rules pertaining to management.&lt;/P&gt;
&lt;P&gt;After it is done, implement NAT to Null IP as per &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21670"&gt;@HeikoAnkenbrand&lt;/a&gt; answer in this post: &lt;A href="https://community.checkpoint.com/t5/Enterprise-Appliances-and-Gaia/How-to-disable-Gaia-access-from-the-Internet/td-p/8227" target="_blank"&gt;https://community.checkpoint.com/t5/Enterprise-Appliances-and-Gaia/How-to-disable-Gaia-access-from-the-Internet/td-p/8227&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Vladimir&lt;/P&gt;</description>
      <pubDate>Sat, 28 Mar 2020 13:14:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/80061#M27395</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2020-03-28T13:14:21Z</dc:date>
    </item>
    <item>
      <title>Re: block port 443 and 80 and 18264 on checkpoint external firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/80075#M27396</link>
      <description>If you have any VPNs (client or site-to-site) or gateways that you manage from the Internet, you cannot disable TCP 18264 (used for certificate revocation) and expect that to continue working.&lt;BR /&gt;HTTPS is used for Visitor Mode on Client-to-Site VPNs and for clients to obtain their initial configuration, thus this may break some clients ability to use VPN.&lt;BR /&gt;HTTP mostly just redirects to HTTPS but it should be blocked if you put in an explicit rule to do so.&lt;BR /&gt;</description>
      <pubDate>Sat, 28 Mar 2020 19:47:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/80075#M27396</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-03-28T19:47:52Z</dc:date>
    </item>
    <item>
      <title>Re: block port 443 and 80 and 18264 on checkpoint external firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/80080#M27397</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/30055"&gt;@Ana_11&lt;/a&gt;;&lt;/P&gt;
&lt;P&gt;THX to&amp;nbsp;&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/11879"&gt;@Vladimir&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;Here the solution: Add an static NAT rule and NAT it to null IP:-)&lt;/P&gt;
&lt;P&gt;src: internet&lt;BR /&gt;&lt;SPAN style="font-family: inherit;"&gt;dst: portal ip&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="font-family: inherit;"&gt;port: portal port&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="font-family: inherit;"&gt;NAT src: internet&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="font-family: inherit;"&gt;NAT dst: static NAT to null IP for example 127.0.0.99&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN style="font-family: inherit;"&gt;NAT port: portal port&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 28 Mar 2020 20:33:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/80080#M27397</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2020-03-28T20:33:01Z</dc:date>
    </item>
    <item>
      <title>Re: block port 443 and 80 and 18264 on checkpoint external firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/157684#M27398</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have this issue as well (http/https open on external interface gateways). We used to use Mobile Access but I disabled the Mobile Access blade about a year ago and afaik have no use any Multi Portal functions on the external interface.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I found this article sk155512&amp;nbsp;-&amp;nbsp;&lt;/P&gt;&lt;P&gt;How to determine which portal is causing MultiPortal to respond on external interface&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Is this relevant in this case? The article states - "MultiPortal creates an implied rule and accepts traffic on port 443 or port 80 if a portal is set to be accessible from All Interfaces. This setting might persist even if the blade was later disabled. This can be changed in the following manner:"&lt;/P&gt;&lt;P&gt;The article is very vague with instruction such as - 5.&amp;nbsp;Change the setting accordingly. I tried to follow the article along in GuiDBedit but could not work out what to do.&amp;nbsp;&lt;/P&gt;&lt;P&gt;A while back I opened a support ticket with Checkpoint but got nowhere with it.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 21 Sep 2022 05:24:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/157684#M27398</guid>
      <dc:creator>ham2065</dc:creator>
      <dc:date>2022-09-21T05:24:39Z</dc:date>
    </item>
    <item>
      <title>Re: block port 443 and 80 and 18264 on checkpoint external firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/157852#M27443</link>
      <description>&lt;P&gt;If you're talking about ports 80/443 to the gateway itself, MultiPortal is definitely involved.&lt;BR /&gt;Screenshots of where precisely you're confused might help.&lt;/P&gt;</description>
      <pubDate>Thu, 22 Sep 2022 14:40:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/157852#M27443</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-09-22T14:40:09Z</dc:date>
    </item>
    <item>
      <title>Re: block port 443 and 80 and 18264 on checkpoint external firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/170883#M30951</link>
      <description>&lt;P&gt;Mode of God:)&amp;nbsp;&lt;/P&gt;&lt;P&gt;Very nice idea.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Feb 2023 19:54:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/170883#M30951</guid>
      <dc:creator>Nazarii_Makohin</dc:creator>
      <dc:date>2023-02-09T19:54:05Z</dc:date>
    </item>
    <item>
      <title>Re: block port 443 and 80 and 18264 on checkpoint external firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/200756#M37713</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;&lt;P&gt;My device is listening on port 80 and 443 from Internet, inven if netstat -nat do not show it.&lt;/P&gt;&lt;P&gt;Accessibility is configured to "According to the firewall policy".&lt;/P&gt;&lt;P&gt;Rules are set to allow only specific ip addresses, so it should be blocked.&lt;/P&gt;&lt;P&gt;Mobile access blade is not active.&lt;/P&gt;&lt;P&gt;Firewall log do not see my tests ( by I see all attacks which are drop) and it logs all implicit and explicit rules.&lt;/P&gt;&lt;P&gt;Telnet to port 80 and 443 show they are open, but connection to Gaia is reset.&lt;/P&gt;&lt;P&gt;Any idea why?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Dec 2023 17:42:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/200756#M37713</guid>
      <dc:creator>Ilovecheckpoint</dc:creator>
      <dc:date>2023-12-15T17:42:26Z</dc:date>
    </item>
    <item>
      <title>Re: block port 443 and 80 and 18264 on checkpoint external firewall</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/200781#M37717</link>
      <description>&lt;P&gt;Have you tried:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk165937" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk165937&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Dec 2023 21:34:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/block-port-443-and-80-and-18264-on-checkpoint-external-firewall/m-p/200781#M37717</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-12-15T21:34:51Z</dc:date>
    </item>
  </channel>
</rss>

