<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PBR Rules in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/PBR-Rules/m-p/195580#M36435</link>
    <description>&lt;P&gt;I think simple network diagram would help here.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Thu, 19 Oct 2023 03:08:25 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-10-19T03:08:25Z</dc:date>
    <item>
      <title>PBR Rules</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/PBR-Rules/m-p/195568#M36428</link>
      <description>&lt;P&gt;Hello, everyone.&lt;/P&gt;
&lt;P&gt;I currently have 2 links in our GW.&lt;/P&gt;
&lt;P&gt;ISP + MPLS&lt;/P&gt;
&lt;P&gt;We have a VLAN 192.168.8.0/24, which currently travels over the MPLS link.&lt;BR /&gt;From this VLAN, we have 1 IP 192.168.8.130 to which we have configured 1 PBR so that it's traffic can be output to the Internet, through the ISP link.&lt;/P&gt;
&lt;P&gt;The problem is that having configured this PBR rule, the IP in question has lost connectivity with other VLANs that were already working prior to the configuration.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="PBR1.png" style="width: 634px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/22861iCA182D30304E5BB0/image-size/large?v=v2&amp;amp;px=999" role="button" title="PBR1.png" alt="PBR1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Is there any way to achieve through the PBR, tell the GW to only apply the PBR for Internet traffic (such as HTTPS, HTTP, DNS), and that any other traffic continues to work with the normal routing table?&lt;/P&gt;
&lt;P&gt;Thanks for any comments.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Oct 2023 23:11:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/PBR-Rules/m-p/195568#M36428</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-10-18T23:11:51Z</dc:date>
    </item>
    <item>
      <title>Re: PBR Rules</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/PBR-Rules/m-p/195580#M36435</link>
      <description>&lt;P&gt;I think simple network diagram would help here.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 19 Oct 2023 03:08:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/PBR-Rules/m-p/195580#M36435</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-10-19T03:08:25Z</dc:date>
    </item>
    <item>
      <title>Re: PBR Rules</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/PBR-Rules/m-p/195586#M36436</link>
      <description>&lt;P&gt;You can use a lot of parameters in your PBR, see&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk167135" target="_blank"&gt;Policy-Based Routing and Application-Based Routing in Gaia (checkpoint.com)&lt;/A&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Inbound Interface at which a packet arrives.&lt;/LI&gt;
&lt;LI&gt;Source IPv4 address and subnet mask.&lt;/LI&gt;
&lt;LI&gt;Destination IPv4 address and subnet mask.&lt;/LI&gt;
&lt;LI&gt;Destination Service Port Number (e.g., FTP, SSH, Telnet).&lt;/LI&gt;
&lt;LI&gt;Protocol Number (e.g., TCP, UDP, ICMP).&lt;/LI&gt;
&lt;LI&gt;Firewall Rule Number (introduced as a hidden feature in R80.40 for Application-Based Routing, such as Office365).&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Thu, 19 Oct 2023 06:26:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/PBR-Rules/m-p/195586#M36436</guid>
      <dc:creator>Wolfgang</dc:creator>
      <dc:date>2023-10-19T06:26:37Z</dc:date>
    </item>
  </channel>
</rss>

