<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Can I totally bypass HTTPS inspection for a particular URL ? in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-I-totally-bypass-HTTPS-inspection-for-a-particular-URL/m-p/213863#M40777</link>
    <description>&lt;P&gt;I should have clarified...if you have separate urlf ordered layer, thats where I would create the rule.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Fri, 10 May 2024 16:01:50 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2024-05-10T16:01:50Z</dc:date>
    <item>
      <title>Can I totally bypass HTTPS inspection for a particular URL ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-I-totally-bypass-HTTPS-inspection-for-a-particular-URL/m-p/213834#M40769</link>
      <description>&lt;P&gt;Can I create a Security Rule to allow HTTPS to a specific Domain and totally bypass HTTPS inspection for a particular URL, rather than creating a Bypass Action rule in the HTTPS Inspection Policy ?&lt;BR /&gt;&lt;BR /&gt;I want to permit access to a particular external URL without the possibility of HTTPS inspection doing something.&amp;nbsp; We have had several instances recently where the Bypass action rule has stopped working, leading to all of the traffic being inspected, which then breaks access to the external website.&lt;BR /&gt;&lt;BR /&gt;I found that I needed to re-push the policy with Threat Prevention ticked in order to get the Bypass Action rules to start working again&lt;/P&gt;</description>
      <pubDate>Fri, 10 May 2024 10:38:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-I-totally-bypass-HTTPS-inspection-for-a-particular-URL/m-p/213834#M40769</guid>
      <dc:creator>championc1</dc:creator>
      <dc:date>2024-05-10T10:38:32Z</dc:date>
    </item>
    <item>
      <title>Re: Can I totally bypass HTTPS inspection for a particular URL ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-I-totally-bypass-HTTPS-inspection-for-a-particular-URL/m-p/213843#M40774</link>
      <description>&lt;P&gt;Well, you can create a rule allowing access to that domain using say domain object or custom url object, as long as you have urlf blade enabled in network layer. I cant guarantee that would work, but you can certainly give it a go.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 10 May 2024 11:51:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-I-totally-bypass-HTTPS-inspection-for-a-particular-URL/m-p/213843#M40774</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-10T11:51:09Z</dc:date>
    </item>
    <item>
      <title>Re: Can I totally bypass HTTPS inspection for a particular URL ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-I-totally-bypass-HTTPS-inspection-for-a-particular-URL/m-p/213863#M40777</link>
      <description>&lt;P&gt;I should have clarified...if you have separate urlf ordered layer, thats where I would create the rule.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 10 May 2024 16:01:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-I-totally-bypass-HTTPS-inspection-for-a-particular-URL/m-p/213863#M40777</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-10T16:01:50Z</dc:date>
    </item>
    <item>
      <title>Re: Can I totally bypass HTTPS inspection for a particular URL ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-I-totally-bypass-HTTPS-inspection-for-a-particular-URL/m-p/214043#M40859</link>
      <description>&lt;P&gt;Yes, that's why we have an HTTPS Inspection policy.&lt;BR /&gt;However, the decision to bypass inspection cannot be made on a full URL, but only on a specific host.&lt;BR /&gt;The reason: most web connections are HTTPS and access to the URL requires full HTTPS Inspection (the very thing you're trying to avoid).&lt;BR /&gt;If you use an App Control category or Custom Application/Site in your policy, this requires App Control.&lt;/P&gt;
&lt;P&gt;A screenshot of your actual HTTPS Inspection policy might be helpful along with version/JHF information.&lt;/P&gt;</description>
      <pubDate>Mon, 13 May 2024 14:57:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-I-totally-bypass-HTTPS-inspection-for-a-particular-URL/m-p/214043#M40859</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-05-13T14:57:32Z</dc:date>
    </item>
    <item>
      <title>Re: Can I totally bypass HTTPS inspection for a particular URL ?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-I-totally-bypass-HTTPS-inspection-for-a-particular-URL/m-p/214044#M40860</link>
      <description>&lt;P&gt;Good points!&lt;/P&gt;</description>
      <pubDate>Mon, 13 May 2024 15:00:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Can-I-totally-bypass-HTTPS-inspection-for-a-particular-URL/m-p/214044#M40860</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-13T15:00:12Z</dc:date>
    </item>
  </channel>
</rss>

