<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic No WebUI or CLI access in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166085#M29863</link>
    <description>&lt;P&gt;Hello, everyone.&lt;/P&gt;&lt;P&gt;Merry Christmas.&lt;/P&gt;&lt;P&gt;I have a problem to be able to access by WebUI and CLI to my GW.&lt;BR /&gt;Having the problem of not being able to access by CLI, I cannot run diagnostic commands.&lt;/P&gt;&lt;P&gt;In the SmartConsole logs, you can see that initially the traffic to access the WebUI of the GW, matches with my explicit rule of the Firewall layer, but then automatically seems to match with another rule that says "Implied Rule", and I just can't access.&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ER1.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18918i98597ED49070A691/image-size/large?v=v2&amp;amp;px=999" role="button" title="ER1.jpg" alt="ER1.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ER2.jpg" style="width: 916px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18919i5EF546C6A6340DA5/image-size/large?v=v2&amp;amp;px=999" role="button" title="ER2.jpg" alt="ER2.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ER3.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18920i32BAAD52D592032C/image-size/large?v=v2&amp;amp;px=999" role="button" title="ER3.jpg" alt="ER3.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Does anyone know how to fix this error?&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;</description>
    <pubDate>Mon, 26 Dec 2022 17:00:17 GMT</pubDate>
    <dc:creator>Matlu</dc:creator>
    <dc:date>2022-12-26T17:00:17Z</dc:date>
    <item>
      <title>No WebUI or CLI access</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166085#M29863</link>
      <description>&lt;P&gt;Hello, everyone.&lt;/P&gt;&lt;P&gt;Merry Christmas.&lt;/P&gt;&lt;P&gt;I have a problem to be able to access by WebUI and CLI to my GW.&lt;BR /&gt;Having the problem of not being able to access by CLI, I cannot run diagnostic commands.&lt;/P&gt;&lt;P&gt;In the SmartConsole logs, you can see that initially the traffic to access the WebUI of the GW, matches with my explicit rule of the Firewall layer, but then automatically seems to match with another rule that says "Implied Rule", and I just can't access.&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ER1.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18918i98597ED49070A691/image-size/large?v=v2&amp;amp;px=999" role="button" title="ER1.jpg" alt="ER1.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ER2.jpg" style="width: 916px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18919i5EF546C6A6340DA5/image-size/large?v=v2&amp;amp;px=999" role="button" title="ER2.jpg" alt="ER2.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ER3.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18920i32BAAD52D592032C/image-size/large?v=v2&amp;amp;px=999" role="button" title="ER3.jpg" alt="ER3.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Does anyone know how to fix this error?&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;</description>
      <pubDate>Mon, 26 Dec 2022 17:00:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166085#M29863</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2022-12-26T17:00:17Z</dc:date>
    </item>
    <item>
      <title>Re: No WebUI or CLI access</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166092#M29867</link>
      <description>&lt;P&gt;I suggest to change the default SSL port 443 to a non-standard port, such as 4434.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 387px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18921i7B2EA329D437F7A8/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;What is your log showing for CLI connection attempts to CPGW?&lt;BR /&gt;Are you able to send script commands to CPGW from SmartConsole (&lt;EM&gt;right click on CPGW to run those&lt;/EM&gt;)?&lt;/P&gt;</description>
      <pubDate>Mon, 26 Dec 2022 20:39:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166092#M29867</guid>
      <dc:creator>Danny</dc:creator>
      <dc:date>2022-12-26T20:39:24Z</dc:date>
    </item>
    <item>
      <title>Re: No WebUI or CLI access</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166093#M29868</link>
      <description>&lt;P&gt;Please review&amp;nbsp;&lt;SPAN&gt;sk134872 and check the logs again after the changes.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Noting that you only permit a destination of internet in the layer. How does the logs look for the SSH traffic?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 26 Dec 2022 22:08:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166093#M29868</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-12-26T22:08:53Z</dc:date>
    </item>
    <item>
      <title>Re: No WebUI or CLI access</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166094#M29869</link>
      <description>&lt;P&gt;Please confirm the following, which may help:&lt;/P&gt;
&lt;P&gt;- Did this ever work, if so, what's changed?&lt;/P&gt;
&lt;P&gt;- Does SIC still work?&lt;/P&gt;
&lt;P&gt;- Do you have LOM connectivity or any means to access the GW out-of-band?&lt;/P&gt;
&lt;P&gt;- What version of CP are you running, including Jumbo?&lt;/P&gt;</description>
      <pubDate>Tue, 27 Dec 2022 23:22:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166094#M29869</guid>
      <dc:creator>genisis__</dc:creator>
      <dc:date>2022-12-27T23:22:46Z</dc:date>
    </item>
    <item>
      <title>Re: No WebUI or CLI access</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166096#M29870</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I have not worked with script to date, but it may be the best time to learn how to do it.&lt;/P&gt;&lt;P&gt;Could you point me to a script to validate your query? Please.&lt;/P&gt;&lt;P&gt;I understand that I can do this from the SmartConsole.&lt;BR /&gt;As I see the scripts from this manager, are supported since version R80.20.&lt;/P&gt;&lt;P&gt;Greetings.&lt;/P&gt;</description>
      <pubDate>Tue, 27 Dec 2022 02:21:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166096#M29870</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2022-12-27T02:21:09Z</dc:date>
    </item>
    <item>
      <title>Re: No WebUI or CLI access</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166098#M29871</link>
      <description>&lt;P&gt;Hi Chris.&lt;/P&gt;&lt;P&gt;I have 2 layers.&lt;BR /&gt;1- Network layer.&lt;BR /&gt;2- APPC+URLF layer.&lt;/P&gt;&lt;P&gt;If you notice, the logs show me that the traffic matches with the explicit rule created in the network layer (attached image), but the problem is that after that, the traffic just starts to match with the "Implied" rule that as I see, belongs to the APPC+URLF layer.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ER4.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18922iC61770F58D508ACD/image-size/large?v=v2&amp;amp;px=999" role="button" title="ER4.jpg" alt="ER4.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;I hope to be clear with my explanation and query.&lt;/P&gt;&lt;P&gt;Greetings.&lt;/P&gt;</description>
      <pubDate>Tue, 27 Dec 2022 02:36:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166098#M29871</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2022-12-27T02:36:50Z</dc:date>
    </item>
    <item>
      <title>Re: No WebUI or CLI access</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166099#M29872</link>
      <description>&lt;P&gt;Didnt you post about this recently and showed you had any any drop at the bottom of 2nd ordered layer? Apologies if that was someone else, but I am fairly certain it was indeed you. If so, please change that rule, as all traffic would be blocked.&lt;/P&gt;</description>
      <pubDate>Tue, 27 Dec 2022 03:15:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166099#M29872</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-12-27T03:15:35Z</dc:date>
    </item>
    <item>
      <title>Re: No WebUI or CLI access</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166112#M29880</link>
      <description>&lt;P&gt;As per your previous thread we're trying to help but you are not following directions about how layers work or providing the requested information.&lt;/P&gt;
&lt;P&gt;Did you change the platform portal url port to start?&lt;/P&gt;
&lt;P&gt;Afterwards do you see the same log / drop reasons for both SSH &amp;amp; Web UI access?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 27 Dec 2022 05:44:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/No-WebUI-or-CLI-access/m-p/166112#M29880</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-12-27T05:44:55Z</dc:date>
    </item>
  </channel>
</rss>

