<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Implied rule allowing external https traffic which need to block in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Implied-rule-allowing-external-https-traffic-which-need-to-block/m-p/228650#M43993</link>
    <description>&lt;P&gt;You'll probably need to do something like this to change the implied rules:&amp;nbsp;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/How-to-disable-Gaia-access-from-the-Internet/m-p/89654/highlight/true#M6863" target="_blank"&gt;https://community.checkpoint.com/t5/Security-Gateways/How-to-disable-Gaia-access-from-the-Internet/m-p/89654/highlight/true#M6863&lt;/A&gt;&lt;BR /&gt;Note that the file you will need to edit will be in the relevant backward compatibility directory on your management rather than $FWDIR/lib.&lt;/P&gt;
&lt;P&gt;Or you can create an fw samp rule to block the necessary traffic:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk164472" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk164472&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 01 Oct 2024 15:26:24 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2024-10-01T15:26:24Z</dc:date>
    <item>
      <title>Implied rule allowing external https traffic which need to block</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Implied-rule-allowing-external-https-traffic-which-need-to-block/m-p/228620#M43983</link>
      <description>&lt;P&gt;Noticed internet resources are accessing our firewall external interface ip with port 443. These traffics are allowed through implied rule and looking for fix. These gateways are running old gaia version 77.20.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Unable to find solution on the checkmates, due to this old gaia version and TAC case also not possible.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Looking for urgent solution&lt;/P&gt;</description>
      <pubDate>Tue, 01 Oct 2024 13:08:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Implied-rule-allowing-external-https-traffic-which-need-to-block/m-p/228620#M43983</guid>
      <dc:creator>ramadhas</dc:creator>
      <dc:date>2024-10-01T13:08:07Z</dc:date>
    </item>
    <item>
      <title>Re: Implied rule allowing external https traffic which need to block</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Implied-rule-allowing-external-https-traffic-which-need-to-block/m-p/228650#M43993</link>
      <description>&lt;P&gt;You'll probably need to do something like this to change the implied rules:&amp;nbsp;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/How-to-disable-Gaia-access-from-the-Internet/m-p/89654/highlight/true#M6863" target="_blank"&gt;https://community.checkpoint.com/t5/Security-Gateways/How-to-disable-Gaia-access-from-the-Internet/m-p/89654/highlight/true#M6863&lt;/A&gt;&lt;BR /&gt;Note that the file you will need to edit will be in the relevant backward compatibility directory on your management rather than $FWDIR/lib.&lt;/P&gt;
&lt;P&gt;Or you can create an fw samp rule to block the necessary traffic:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk164472" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk164472&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 01 Oct 2024 15:26:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Implied-rule-allowing-external-https-traffic-which-need-to-block/m-p/228650#M43993</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-10-01T15:26:24Z</dc:date>
    </item>
    <item>
      <title>Re: Implied rule allowing external https traffic which need to block</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Implied-rule-allowing-external-https-traffic-which-need-to-block/m-p/228659#M43995</link>
      <description>&lt;P&gt;thank you for the swift response, let me perform above task and update you asap.&lt;/P&gt;</description>
      <pubDate>Tue, 01 Oct 2024 15:58:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Implied-rule-allowing-external-https-traffic-which-need-to-block/m-p/228659#M43995</guid>
      <dc:creator>ramadhas</dc:creator>
      <dc:date>2024-10-01T15:58:12Z</dc:date>
    </item>
  </channel>
</rss>

