<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Why is port 80 and 443 still open to the internet? in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/181701#M33261</link>
    <description>&lt;P&gt;El tráfico 443 es utilizado por el software Check Point para varias cosas, puede ver los usos en sk52421. Si bien 443 está permitido, no es explotable, sin embargo, deshabilitar 443 podría causar que ciertas cosas se rompan, como la VPN de acceso remoto y los portales de Check Point. Si bien no se recomienda hacer esto porque romperá ciertas funciones, puede deshabilitar la conectividad a 443 usando sk165937. El sk proporciona dos métodos, el primero en 'Para deshabilitar la conexión a Security Gateway en el puerto TCP 80 y en el puerto TCP 443' y el método alternativo para crear una regla SAM que bloquea el tráfico 443.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 23 May 2023 04:49:02 GMT</pubDate>
    <dc:creator>ldiaz0891</dc:creator>
    <dc:date>2023-05-23T04:49:02Z</dc:date>
    <item>
      <title>Why is port 80 and 443 still open to the internet?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/32999#M27407</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We have a mobile access blade activated in our firewall but have disabled it via the GUI interface; however we can still see that port 80 and 443 are open to the internet.&amp;nbsp; We can see via tracker that it is an implied rule that is accepting traffic on 80 and 443 but cannot see which implied rule is allowing it.&lt;/P&gt;&lt;P&gt;Does anyone have any ideas?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 21 Jun 2018 11:34:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/32999#M27407</guid>
      <dc:creator>Chris_Prescott</dc:creator>
      <dc:date>2018-06-21T11:34:45Z</dc:date>
    </item>
    <item>
      <title>Re: Why is port 80 and 443 still open to the internet?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/33000#M27408</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A class="link-titled" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk105740" title="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk105740"&gt;HTTP and HTTPS requests to external interfaces create implied rule 0 accepts in SmartView Tracker&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 21 Jun 2018 17:40:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/33000#M27408</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-06-21T17:40:38Z</dc:date>
    </item>
    <item>
      <title>Re: Why is port 80 and 443 still open to the internet?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/82482#M27409</link>
      <description>&lt;P&gt;Hello &lt;A href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7" target="_self"&gt;&lt;SPAN class="login-bold"&gt;PhoneBoy&lt;/SPAN&gt;&lt;/A&gt;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Even after making changes anyone from internet can telnet on 443 and 80 .&lt;/P&gt;&lt;P&gt;Due to this many vulnerabilities are coming from security team.&lt;/P&gt;&lt;P&gt;Does we have any fixed solution on this ?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 20 Apr 2020 13:44:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/82482#M27409</guid>
      <dc:creator>Praphulla</dc:creator>
      <dc:date>2020-04-20T13:44:48Z</dc:date>
    </item>
    <item>
      <title>Re: Why is port 80 and 443 still open to the internet?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/82496#M27410</link>
      <description>&lt;P&gt;If you set it to internal interface and still have the issue, i would contact TAC to get it resolved!&lt;/P&gt;</description>
      <pubDate>Mon, 20 Apr 2020 14:49:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/82496#M27410</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2020-04-20T14:49:43Z</dc:date>
    </item>
    <item>
      <title>Re: Why is port 80 and 443 still open to the internet?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/110510#M27411</link>
      <description>&lt;P&gt;sk165937 should help.&lt;/P&gt;
&lt;P&gt;For HTTP redirects in particular, see the very bottom of the SK.&lt;/P&gt;</description>
      <pubDate>Thu, 11 Feb 2021 04:50:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/110510#M27411</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2021-02-11T04:50:20Z</dc:date>
    </item>
    <item>
      <title>Re: Why is port 80 and 443 still open to the internet?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/157683#M27412</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have this issue as well (http/https open on external interface gateways). We used to use Mobile Access but I disabled the Mobile Access blade about a year ago and afaik have no use any Multi Portal functions on the external interface.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I found this article &lt;SPAN&gt;sk155512&amp;nbsp;&lt;/SPAN&gt;-&amp;nbsp;&lt;/P&gt;&lt;P&gt;How to determine which portal is causing MultiPortal to respond on external interface&lt;/P&gt;&lt;P&gt;Is this relevant in this case? The article states - "&lt;SPAN&gt;MultiPortal creates an implied rule and accepts traffic on port 443 or port 80 if a portal is set to be accessible from All Interfaces. This setting might persist even if the blade was later disabled. This can be changed in the following manner:"&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;The article is very vague with instruction such as - 5.&amp;nbsp;&lt;SPAN&gt;Change the setting accordingly. I tried to follow the article along in GuiDBedit but could not work out what to do.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;A while back I opened a support ticket with Checkpoint but got nowhere with it.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 21 Sep 2022 05:09:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/157683#M27412</guid>
      <dc:creator>ham2065</dc:creator>
      <dc:date>2022-09-21T05:09:12Z</dc:date>
    </item>
    <item>
      <title>Re: Why is port 80 and 443 still open to the internet?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/181701#M33261</link>
      <description>&lt;P&gt;El tráfico 443 es utilizado por el software Check Point para varias cosas, puede ver los usos en sk52421. Si bien 443 está permitido, no es explotable, sin embargo, deshabilitar 443 podría causar que ciertas cosas se rompan, como la VPN de acceso remoto y los portales de Check Point. Si bien no se recomienda hacer esto porque romperá ciertas funciones, puede deshabilitar la conectividad a 443 usando sk165937. El sk proporciona dos métodos, el primero en 'Para deshabilitar la conexión a Security Gateway en el puerto TCP 80 y en el puerto TCP 443' y el método alternativo para crear una regla SAM que bloquea el tráfico 443.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 23 May 2023 04:49:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Why-is-port-80-and-443-still-open-to-the-internet/m-p/181701#M33261</guid>
      <dc:creator>ldiaz0891</dc:creator>
      <dc:date>2023-05-23T04:49:02Z</dc:date>
    </item>
  </channel>
</rss>

