<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: port 264 queries whether its need or not in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/port-264-queries-whether-its-need-or-not/m-p/166739#M30018</link>
    <description>&lt;P&gt;Chris is spot on with those SKs as&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/1551"&gt;@Blason_R&lt;/a&gt;&amp;nbsp;said.&lt;/P&gt;</description>
    <pubDate>Thu, 05 Jan 2023 03:51:10 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-01-05T03:51:10Z</dc:date>
    <item>
      <title>port 264 queries whether its need or not</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/port-264-queries-whether-its-need-or-not/m-p/166657#M30002</link>
      <description>&lt;P&gt;We have the following questions regarding FW1_topo traffic.&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;What is FW1_topo traffic for?&lt;/LI&gt;&lt;LI&gt;What is the impact to our production environment when a known IOC IP address had established connection with our firewall using FW1_topo service?&lt;/LI&gt;&lt;LI&gt;Is allowing FW1_topo service by default necessary in our environment?&lt;/LI&gt;&lt;LI&gt;Can we disable this implied rule?&lt;/LI&gt;&lt;LI&gt;If yes, how can we disable it? And what is the impact of disabling this implied rule?&lt;/LI&gt;&lt;/OL&gt;</description>
      <pubDate>Wed, 04 Jan 2023 07:53:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/port-264-queries-whether-its-need-or-not/m-p/166657#M30002</guid>
      <dc:creator>umar7</dc:creator>
      <dc:date>2023-01-04T07:53:04Z</dc:date>
    </item>
    <item>
      <title>Re: port 264 queries whether its need or not</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/port-264-queries-whether-its-need-or-not/m-p/166658#M30003</link>
      <description>&lt;P&gt;Is your gateway configured for remote access VPN?&lt;/P&gt;
&lt;P&gt;Please refer:&lt;/P&gt;
&lt;P&gt;sk60773: [RST, ACK] response to TCP/264&lt;/P&gt;
&lt;P&gt;sk132712: Vulnerability scan shows ports 18231 and 264 open under LISTEN mode when using TLS1.0 and TLS1.1 - reference CVE-2000-1201&lt;/P&gt;
&lt;P&gt;sk69360: Check Point response to SecuRemote Topology Service Hostname Disclosure&lt;/P&gt;
&lt;P&gt;sk62692: Ports used on Security Gateway for SecureClient and Endpoint Security VPN&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you have no plans to leverage Check Point remote access disabling this global option may also work for you:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="264.png" style="width: 688px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19006i5732B2384D1DB916/image-size/large?v=v2&amp;amp;px=999" role="button" title="264.png" alt="264.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 05 Jan 2023 04:07:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/port-264-queries-whether-its-need-or-not/m-p/166658#M30003</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2023-01-05T04:07:10Z</dc:date>
    </item>
    <item>
      <title>Re: port 264 queries whether its need or not</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/port-264-queries-whether-its-need-or-not/m-p/166738#M30017</link>
      <description>&lt;P&gt;As suggested by&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/3630"&gt;@Chris_Atkinson&lt;/a&gt;&amp;nbsp;this is used for fetching the Topology by Remote Access VPN users. if you dont use this feature you can disable it using Implied rules and those are correct sks given by him and if you are following those it should not be a problem.&lt;/P&gt;</description>
      <pubDate>Thu, 05 Jan 2023 02:43:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/port-264-queries-whether-its-need-or-not/m-p/166738#M30017</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2023-01-05T02:43:14Z</dc:date>
    </item>
    <item>
      <title>Re: port 264 queries whether its need or not</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/port-264-queries-whether-its-need-or-not/m-p/166739#M30018</link>
      <description>&lt;P&gt;Chris is spot on with those SKs as&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/1551"&gt;@Blason_R&lt;/a&gt;&amp;nbsp;said.&lt;/P&gt;</description>
      <pubDate>Thu, 05 Jan 2023 03:51:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/port-264-queries-whether-its-need-or-not/m-p/166739#M30018</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-01-05T03:51:10Z</dc:date>
    </item>
    <item>
      <title>Re: port 264 queries whether its need or not</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/port-264-queries-whether-its-need-or-not/m-p/166763#M30023</link>
      <description>&lt;P&gt;hello guys ,&lt;/P&gt;&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;thanks for the information i will update and if i have any queries regarding this issue . i will update the chat tail.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 05 Jan 2023 09:48:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/port-264-queries-whether-its-need-or-not/m-p/166763#M30023</guid>
      <dc:creator>umar7</dc:creator>
      <dc:date>2023-01-05T09:48:19Z</dc:date>
    </item>
  </channel>
</rss>

