<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Disabling &amp;quot;Drop out of state TCP packets&amp;quot; on a host by host basis. R81.10 HF87 in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196502#M36689</link>
    <description>&lt;P&gt;Hey,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Check out Vladimir's post in&amp;nbsp;&lt;A href="https://community.checkpoint.com/t5/Management/How-to-enable-TCP-out-of-state-exceptions-per-network-or-host/td-p/13682" target="_blank"&gt;https://community.checkpoint.com/t5/Management/How-to-enable-TCP-out-of-state-exceptions-per-network-or-host/td-p/13682&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 29 Oct 2023 19:47:59 GMT</pubDate>
    <dc:creator>AaronCP</dc:creator>
    <dc:date>2023-10-29T19:47:59Z</dc:date>
    <item>
      <title>Disabling "Drop out of state TCP packets" on a host by host basis. R81.10 HF87</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196496#M36683</link>
      <description>&lt;P&gt;Hello.&amp;nbsp; Due to an asymmetrical routing issue inherent in the design of our VOIP network I am trying to find out how I can disable this check for certain hosts or the entire VOIP network if necessary.&amp;nbsp; &amp;nbsp;I see the option in Global Properties but I am trying to only disable this for some hosts that connect over an MPLS connection at each site.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I know we need to redesign things so we don't have this issue but that is not an option at the moment.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 29 Oct 2023 17:58:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196496#M36683</guid>
      <dc:creator>AaronPW</dc:creator>
      <dc:date>2023-10-29T17:58:41Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling "Drop out of state TCP packets" on a host by host basis. R81.10 HF87</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196502#M36689</link>
      <description>&lt;P&gt;Hey,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Check out Vladimir's post in&amp;nbsp;&lt;A href="https://community.checkpoint.com/t5/Management/How-to-enable-TCP-out-of-state-exceptions-per-network-or-host/td-p/13682" target="_blank"&gt;https://community.checkpoint.com/t5/Management/How-to-enable-TCP-out-of-state-exceptions-per-network-or-host/td-p/13682&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 29 Oct 2023 19:47:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196502#M36689</guid>
      <dc:creator>AaronCP</dc:creator>
      <dc:date>2023-10-29T19:47:59Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling "Drop out of state TCP packets" on a host by host basis. R81.10 HF87</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196504#M36691</link>
      <description>&lt;P&gt;I'm trying that but it just isn't having any effect.&amp;nbsp; I'm still seeing the drops.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 29 Oct 2023 21:32:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196504#M36691</guid>
      <dc:creator>AaronPW</dc:creator>
      <dc:date>2023-10-29T21:32:36Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling "Drop out of state TCP packets" on a host by host basis. R81.10 HF87</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196505#M36692</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/95677"&gt;@AaronPW&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;
&lt;P&gt;I'm trying that but it just isn't having any effect.&amp;nbsp; I'm still seeing the drops.&amp;nbsp;&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;Have you tried modifying the INSPECT code as per &lt;A href="https://support.checkpoint.com/results/sk/sk11088" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk11088&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 29 Oct 2023 21:52:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196505#M36692</guid>
      <dc:creator>AaronCP</dc:creator>
      <dc:date>2023-10-29T21:52:32Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling "Drop out of state TCP packets" on a host by host basis. R81.10 HF87</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196509#M36695</link>
      <description>&lt;P&gt;I think sk&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/64803"&gt;@AaronCP&lt;/a&gt;&amp;nbsp;gave you is your best bet, but if that fails, I would maybe get an official TAC response. I know couple of years ago, they actually gave me Vladimir's post as well, but that sadly did not work, so customer simply ended up unchecking the global properties option. I know, its not the best workaround, but it seemed to be the easiest one at the time.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 30 Oct 2023 03:14:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196509#M36695</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-10-30T03:14:47Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling "Drop out of state TCP packets" on a host by host basis. R81.10 HF87</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196945#M36744</link>
      <description>&lt;P&gt;Apparently you cannot do this on a host by host basis in the way I am asking.&amp;nbsp; The L3 guy said I can only do this on an entire gateway basis and not on a network by network basis. But honestly the quality of help I get from CP TAC is hit or miss so I am going to try that other method with the file modification.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Nov 2023 17:28:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196945#M36744</guid>
      <dc:creator>AaronPW</dc:creator>
      <dc:date>2023-11-02T17:28:23Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling "Drop out of state TCP packets" on a host by host basis. R81.10 HF87</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196951#M36746</link>
      <description>&lt;P&gt;Well, I guess an official response that only gateways there are supported. Its possible method Vladimir gave works, I never tested it myself.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 02 Nov 2023 17:53:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196951#M36746</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-11-02T17:53:19Z</dc:date>
    </item>
    <item>
      <title>Re: Disabling "Drop out of state TCP packets" on a host by host basis. R81.10 HF87</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196964#M36751</link>
      <description>&lt;P&gt;By modifying the INSPECT code as described in sk11088, you can do exclusions on a per-host/network basis.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Nov 2023 19:05:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Disabling-quot-Drop-out-of-state-TCP-packets-quot-on-a-host-by/m-p/196964#M36751</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-11-02T19:05:33Z</dc:date>
    </item>
  </channel>
</rss>

