<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Meaning of Reject in Log in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183083#M33599</link>
    <description>&lt;P&gt;I have read the Link of the discussion that you have shared with me, but I have the doubt, if this applies also, when the action of your rule is in "Accept", because in my case, the rule is to "allow" a flow, not to deny it.&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="R5.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21249i92FB456186E719C2/image-size/large?v=v2&amp;amp;px=999" role="button" title="R5.png" alt="R5.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Cheers. &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 02 Jun 2023 16:06:23 GMT</pubDate>
    <dc:creator>Matlu</dc:creator>
    <dc:date>2023-06-02T16:06:23Z</dc:date>
    <item>
      <title>Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183071#M33595</link>
      <description>&lt;P&gt;Hello, world.&lt;/P&gt;
&lt;P&gt;I have a ClusterXL, running R81.10.&lt;BR /&gt;We currently have a connection policy defined.&lt;/P&gt;
&lt;P&gt;SRC: 10.7.52.128&lt;BR /&gt;DST: 192.168.216.214&lt;/P&gt;
&lt;P&gt;The service that most consumes this source, is the SSH.&lt;BR /&gt;Suddenly, the "connection" was interrupted.&lt;/P&gt;
&lt;P&gt;How can I rule out that the Firewall is responsible for this "interruption"?&lt;/P&gt;
&lt;P&gt;I understand that it would be to check the logs. I have checked the logs, and I found a REJECT action, which leaves me with the question, is this action something normal in the Checkpoint?&lt;BR /&gt;Shouldn't I see "DROP"?&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="R4.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21246i8DC8874E8CB08507/image-size/large?v=v2&amp;amp;px=999" role="button" title="R4.png" alt="R4.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;I get Reject, for a PING service, I have the impression that the user, as he lost the SSH connection, started to try the PING to that destination, and the Checkpoint, for some reason, started to register it with this action.&lt;/P&gt;
&lt;P&gt;Is this normal?&lt;/P&gt;
&lt;P&gt;Greetings. &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 15:14:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183071#M33595</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-06-02T15:14:27Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183072#M33596</link>
      <description>&lt;P&gt;Hey bro,&lt;/P&gt;
&lt;P&gt;Thats actually good question. See below links, hopefully they are useful. In layman's terms, all it tells you is that traffic will be denied either way, BUT, reject will send a message along with it and drop wont, thats all.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/Rejects-with-Drop-rules/td-p/113538" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/Security-Gateways/Rejects-with-Drop-rules/td-p/113538&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.baeldung.com/linux/iptables-reject-vs-drop#:~:text=The%20REJECT%20rule%20immediately%20rejected,timed%20out%20after%20a%20while" target="_blank" rel="noopener"&gt;https://www.baeldung.com/linux/iptables-reject-vs-drop#:~:text=The%20REJECT%20rule%20immediately%20rejected,timed%20out%20after%20a%20while&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 15:26:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183072#M33596</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T15:26:34Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183083#M33599</link>
      <description>&lt;P&gt;I have read the Link of the discussion that you have shared with me, but I have the doubt, if this applies also, when the action of your rule is in "Accept", because in my case, the rule is to "allow" a flow, not to deny it.&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="R5.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21249i92FB456186E719C2/image-size/large?v=v2&amp;amp;px=999" role="button" title="R5.png" alt="R5.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Cheers. &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 16:06:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183083#M33599</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-06-02T16:06:23Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183084#M33600</link>
      <description>&lt;P&gt;Hey bro,&lt;/P&gt;
&lt;P&gt;Just saw an email stating you said this, so since I was not clear on it, wanted to clarify : - )&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;*****************&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have read the Link of the discussion that you have shared with me, but I have the doubt, if this applies also, when the action of your rule is in "Accept", because in my case, the rule is to "allow" a flow, not to deny it.&lt;BR aria-hidden="true" /&gt;&lt;BR aria-hidden="true" /&gt;&lt;/P&gt;
&lt;P&gt;Cheers. &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;**************************&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 16:06:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183084#M33600</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T16:06:43Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183085#M33601</link>
      <description>&lt;P&gt;Technically, if rule's action is accept, which it is, then we would need to examine the log in question and see why it shows rejected.&lt;/P&gt;
&lt;P&gt;Makes sense?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 16:10:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183085#M33601</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T16:10:16Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183086#M33602</link>
      <description>&lt;P&gt;Below is good reference...&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81.20/SmartConsole_OLH/EN/Topics-OLH/AVpngGVpF7G1O0O8nM1RSQ2.htm?cshid=AVpngGVpF7G1O0O8nM1RSQ2" target="_blank"&gt;Action Settings (checkpoint.com)&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 16:11:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183086#M33602</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T16:11:24Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183087#M33603</link>
      <description>&lt;P&gt;I understand a little more about the documentation.&lt;BR /&gt;&lt;BR /&gt;In the comments that I see from the other forum that you shared with me, what I understand is that this REJECT action, makes more sense, when it is INSPECTION traffic (HTTPS INSPECTION, probably), or when it is IPS (intrusion prevention system) traffic.&lt;BR /&gt;&lt;BR /&gt;In my case, the connection between source and destination is mostly through SSH.&lt;BR /&gt;Does it make sense to show this kind of log in the SmartConsole?&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 16:50:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183087#M33603</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-06-02T16:50:33Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183088#M33604</link>
      <description>&lt;P&gt;Thats true, but its hard for me to say, unless I can see full details about the log from the smart console. Keep in mind, it also could be due to the fact that connection itself was closed prematurely, meaning 3-way handshake was never completed.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 16:54:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183088#M33604</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T16:54:27Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183093#M33605</link>
      <description>&lt;P&gt;Well, as long as I don't see a log that says "DROP" between my ORIGIN and DESTINATION, I defend my FIREWALL, hahaha.&lt;BR /&gt;Our problem was not. &lt;span class="lia-unicode-emoji" title=":grinning_face_with_smiling_eyes:"&gt;😄&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;The Reject leaves me confused, but I'll handle the shared theory and the one in the documentation, and keep blaming the end server, hahahaha.&lt;/P&gt;
&lt;P&gt;Cheers. &lt;span class="lia-unicode-emoji" title=":grinning_face_with_smiling_eyes:"&gt;😄&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 18:10:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183093#M33605</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-06-02T18:10:02Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183094#M33606</link>
      <description>&lt;P&gt;Honestly, as I said mate, if you can send all the log details here (just blur out any sensitive info), we may be able to give better explanation.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 18:12:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183094#M33606</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T18:12:10Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183100#M33607</link>
      <description>&lt;P&gt;I hope these images will be more useful to find a better explanation. &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="EV2.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21252i8DD9729457ADA623/image-size/large?v=v2&amp;amp;px=999" role="button" title="EV2.png" alt="EV2.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="EV1.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21251iFAD35E9501598678/image-size/large?v=v2&amp;amp;px=999" role="button" title="EV1.png" alt="EV1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Thanks, Buddy &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 18:35:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183100#M33607</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-06-02T18:35:23Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183104#M33609</link>
      <description>&lt;P&gt;There is your answer amigo : - ). Sooo...you need to confirm SAM rules you got defined in SV monitor.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21253i8C809D8EF1D15480/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt; Its in sv monitor, under tools...&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_2.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21254iE7DB533371CB2BCB/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_2.png" alt="Screenshot_2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 18:41:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183104#M33609</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T18:41:59Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183105#M33610</link>
      <description>&lt;P&gt;You can also run below to check.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;[Expert@quantum-firewall:0]# fw sam_policy get&lt;BR /&gt;no corresponding SAM policy requests&lt;BR /&gt;[Expert@quantum-firewall:0]#&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 18:44:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183105#M33610</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T18:44:57Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183118#M33618</link>
      <description>&lt;P&gt;At the moment, I can only find this "log" in the SAM, which has nothing to do with the destination I am looking for.&lt;/P&gt;
&lt;P&gt;I understand that the SAM is no longer blocking that IP that was initially reported to me, right?&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="R6.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21255i9F7DE065BE043E40/image-size/large?v=v2&amp;amp;px=999" role="button" title="R6.png" alt="R6.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;But how do I know if there is a rule in the SAM for that destination with which I had problems?&lt;/P&gt;
&lt;P&gt;Cheers.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 20:49:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183118#M33618</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-06-02T20:49:34Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183119#M33619</link>
      <description>&lt;P&gt;It would show if you click on all gateways option in sv monitor or run command I gave in expert -&amp;gt; fw sam_policy get. That is, mind you, IF it still exists...&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 21:10:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183119#M33619</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T21:10:31Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183129#M33620</link>
      <description>&lt;P&gt;This is what I get from the recommendations you give me.&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="R8.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21257iFE521B2B1BE8C50A/image-size/large?v=v2&amp;amp;px=999" role="button" title="R8.png" alt="R8.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="R7.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21256i6CC93FF7A421C905/image-size/large?v=v2&amp;amp;px=999" role="button" title="R7.png" alt="R7.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;I am still a bit confused about the SAM.&lt;BR /&gt;I am doing some research.&lt;/P&gt;
&lt;P&gt;SAM works on Gateways, right? Or also on the SMS (SmartCenter) itself.&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;Thanks for your comments.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 22:01:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183129#M33620</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-06-02T22:01:17Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183130#M33621</link>
      <description>&lt;P&gt;SAM rules are applicable to gateway only.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 22:04:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183130#M33621</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T22:04:51Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183132#M33623</link>
      <description>&lt;P&gt;I understand.&lt;/P&gt;
&lt;P&gt;However, I don't see any current data that relates to my target IP in question, probably, the SAM rule is not in effect.&lt;/P&gt;
&lt;P&gt;Even so, according to the LOG I showed, I now understand that it was the SAM rule that "blocked" the ICMP traffic and "logged" it as a "REJECT".&lt;/P&gt;
&lt;P&gt;However, according to the logs that I keep seeing, nothing tells me that it was the Firewall that cut the SSH connection between the source and the destination.&lt;/P&gt;
&lt;P&gt;Thanks for your comments, bro.&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 22:23:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183132#M33623</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-06-02T22:23:42Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183133#M33624</link>
      <description>&lt;P&gt;I get your logic. I would probably verify all this with TAC, but to me, based on what you showed so far, appears to be SAM rule related.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have a nice weekend!&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-unicode-emoji" title=":thumbs_up:"&gt;👍&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 02 Jun 2023 22:28:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183133#M33624</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-06-02T22:28:01Z</dc:date>
    </item>
    <item>
      <title>Re: Meaning of Reject in Log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183139#M33627</link>
      <description>&lt;P&gt;Please double-click on one of the reject logs, and show us what it says.&lt;/P&gt;</description>
      <pubDate>Sat, 03 Jun 2023 11:36:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Meaning-of-Reject-in-Log/m-p/183139#M33627</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-06-03T11:36:30Z</dc:date>
    </item>
  </channel>
</rss>

