<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to configure the gateway to reject downloads greater than X MB. in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-configure-the-gateway-to-reject-downloads-greater-than-X/m-p/199060#M37291</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;We discovered that checkpoint is compatible with some file extensions.&lt;/P&gt;&lt;P&gt;We were testing on a website that downloads files with the .dat extension. This extension is not compatible, so it did not match the rule.&lt;/P&gt;&lt;P&gt;Reference follows:&lt;/P&gt;&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_DataLossPrevention_AdminGuide/Topics-DLPG/Defining-New-File-Types.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_DataLossPrevention_AdminGuide/Topics-DLPG/Defining-New-File-Types.htm&lt;/A&gt;&lt;/P&gt;&lt;P&gt;For our configuration to work, we use content awareness and https inspection.&lt;/P&gt;</description>
    <pubDate>Mon, 27 Nov 2023 19:32:36 GMT</pubDate>
    <dc:creator>Marquevis</dc:creator>
    <dc:date>2023-11-27T19:32:36Z</dc:date>
    <item>
      <title>How to configure the gateway to reject downloads greater than X MB.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-configure-the-gateway-to-reject-downloads-greater-than-X/m-p/198834#M37233</link>
      <description>&lt;P&gt;Hello everybody.&lt;/P&gt;&lt;P&gt;I received a request from a customer to configure a rule in the gateway policy to block downloads of files larger than 500 MB.&lt;/P&gt;&lt;P&gt;I enabled https inspection to the gateway can do full inspection on the HTTPS protocol and I enabled the content Awareness blade so I can create the rules.&lt;/P&gt;&lt;P&gt;Import the https inspection certificate to the client machine and see the inspection being done.&lt;/P&gt;&lt;P&gt;I created the rule in my policy with the source being an AD group, the destination INTERNET and in the "Content" column I put it to consider any direction. I also added the "Large Archive", "Large Archive" objects and a few others (the screenshot is attached).&lt;/P&gt;&lt;P&gt;I configured the "Large Archive" and "Large Archive" objects to identify files larger than 500 GB in the properties. I even put a smaller size (for example 1MB, 10MB) to test too.&lt;/P&gt;&lt;P&gt;When the client starts downloading the file (for example, a 1 GB ISO) I see that the traffic does not match the rule I created.&lt;/P&gt;&lt;P&gt;So I have two questions: Can I meet the customer's requirements at the gateway? If so, what else needs to be done?&lt;/P&gt;&lt;P&gt;The customer has a centrally managed enterprise gateway cluster in version R81.10 take 95.&lt;/P&gt;</description>
      <pubDate>Fri, 24 Nov 2023 13:14:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-configure-the-gateway-to-reject-downloads-greater-than-X/m-p/198834#M37233</guid>
      <dc:creator>Marquevis</dc:creator>
      <dc:date>2023-11-24T13:14:31Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure the gateway to reject downloads greater than X MB.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-configure-the-gateway-to-reject-downloads-greater-than-X/m-p/198965#M37261</link>
      <description>&lt;P&gt;Which rule is being matched when you download a large file?&lt;/P&gt;</description>
      <pubDate>Mon, 27 Nov 2023 09:14:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-configure-the-gateway-to-reject-downloads-greater-than-X/m-p/198965#M37261</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-11-27T09:14:16Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure the gateway to reject downloads greater than X MB.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-configure-the-gateway-to-reject-downloads-greater-than-X/m-p/198966#M37262</link>
      <description>&lt;P&gt;Which rule is being matched when you download a large file?&lt;/P&gt;</description>
      <pubDate>Mon, 27 Nov 2023 09:14:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-configure-the-gateway-to-reject-downloads-greater-than-X/m-p/198966#M37262</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-11-27T09:14:59Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure the gateway to reject downloads greater than X MB.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-configure-the-gateway-to-reject-downloads-greater-than-X/m-p/198967#M37263</link>
      <description>&lt;P&gt;Also, did you try to change the Access Role to just the local network? Is file downloaded through office to internet HTTPS session? Not enough info here to help you out.&lt;/P&gt;</description>
      <pubDate>Mon, 27 Nov 2023 09:16:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-configure-the-gateway-to-reject-downloads-greater-than-X/m-p/198967#M37263</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-11-27T09:16:23Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure the gateway to reject downloads greater than X MB.</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-configure-the-gateway-to-reject-downloads-greater-than-X/m-p/199060#M37291</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;We discovered that checkpoint is compatible with some file extensions.&lt;/P&gt;&lt;P&gt;We were testing on a website that downloads files with the .dat extension. This extension is not compatible, so it did not match the rule.&lt;/P&gt;&lt;P&gt;Reference follows:&lt;/P&gt;&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_DataLossPrevention_AdminGuide/Topics-DLPG/Defining-New-File-Types.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_DataLossPrevention_AdminGuide/Topics-DLPG/Defining-New-File-Types.htm&lt;/A&gt;&lt;/P&gt;&lt;P&gt;For our configuration to work, we use content awareness and https inspection.&lt;/P&gt;</description>
      <pubDate>Mon, 27 Nov 2023 19:32:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-configure-the-gateway-to-reject-downloads-greater-than-X/m-p/199060#M37291</guid>
      <dc:creator>Marquevis</dc:creator>
      <dc:date>2023-11-27T19:32:36Z</dc:date>
    </item>
  </channel>
</rss>

