<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Page works only when HTTPS inspected in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Page-works-only-when-HTTPS-inspected/m-p/208865#M39556</link>
    <description>&lt;P&gt;I would suggest to contact CP TAC to get the reason for this!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Fri, 15 Mar 2024 10:54:35 GMT</pubDate>
    <dc:creator>G_W_Albrecht</dc:creator>
    <dc:date>2024-03-15T10:54:35Z</dc:date>
    <item>
      <title>Page works only when HTTPS inspected</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Page-works-only-when-HTTPS-inspected/m-p/208861#M39555</link>
      <description>&lt;P&gt;Hi, I just faced an strange issue, which hasn't ever occured in my 10 years of working with Check Point.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have a server that needs to access Apple resources. Sometimes it worked, sometimes it didn't.&lt;/P&gt;&lt;P&gt;The ruleset for NW &amp;amp; AppC are fine, everything is allowed.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We then realized that user privileges in HTTPS inspection ruleset caused the strange behavior.&lt;/P&gt;&lt;P&gt;Per Default: The server was bypassed -&amp;gt; with a bypass, it doesn't work.&lt;/P&gt;&lt;P&gt;As soon as a user logged in, it triggered an AR, which caused the connection to be inspected - and then it works.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We tried to analyze this, and definitely the behavior is the opposite of the behavior you'd usually expect:&lt;/P&gt;&lt;P&gt;A bypass doesn't work, an inspect works.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;My only logical explanation would be, that the cipher/protocol client-settings of the internal server are&amp;nbsp; not compatible with Apple - and that an "inspect" masks these settings to the outbound GW ciphers - and therefore "fixes" the connection.&lt;BR /&gt;&lt;BR /&gt;But - the server is up-to-date, has proper settings, supports TLS1.2 &amp;amp; 1.3 with secure ciphers &amp;amp; everyhting else worked, except this one service.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Has anyone ever faced something like that or has an idea what could cause such a behavior?&lt;/P&gt;</description>
      <pubDate>Fri, 15 Mar 2024 10:13:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Page-works-only-when-HTTPS-inspected/m-p/208861#M39555</guid>
      <dc:creator>xiro</dc:creator>
      <dc:date>2024-03-15T10:13:57Z</dc:date>
    </item>
    <item>
      <title>Re: Page works only when HTTPS inspected</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Page-works-only-when-HTTPS-inspected/m-p/208865#M39556</link>
      <description>&lt;P&gt;I would suggest to contact CP TAC to get the reason for this!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Mar 2024 10:54:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Page-works-only-when-HTTPS-inspected/m-p/208865#M39556</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2024-03-15T10:54:35Z</dc:date>
    </item>
    <item>
      <title>Re: Page works only when HTTPS inspected</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Page-works-only-when-HTTPS-inspected/m-p/208870#M39559</link>
      <description>&lt;P&gt;I had never heard of something like that myself. It usually works when site is bypassed in https inspection policy, not the other way around. Can you send some screenshots of how this is configured when it works? Just blur out any sensitive data.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 15 Mar 2024 12:15:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Page-works-only-when-HTTPS-inspected/m-p/208870#M39559</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-03-15T12:15:52Z</dc:date>
    </item>
    <item>
      <title>Re: Page works only when HTTPS inspected</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Page-works-only-when-HTTPS-inspected/m-p/208907#M39570</link>
      <description>&lt;P&gt;You can prove this is exactly what happens by taking a tcpdump in both situations (with and without HTTPS Inspection enabled for this server).&lt;BR /&gt;You should see the cipher suites and such used.&lt;/P&gt;</description>
      <pubDate>Fri, 15 Mar 2024 22:54:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Page-works-only-when-HTTPS-inspected/m-p/208907#M39570</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-03-15T22:54:09Z</dc:date>
    </item>
  </channel>
</rss>

