<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Allowing access to a specific URL path in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236487#M45858</link>
    <description>&lt;P&gt;Also to Andy,&lt;/P&gt;&lt;P&gt;Yeah, I got it to work, and also ended up not using regular expressions.&lt;/P&gt;&lt;P&gt;I've enabled HTTPSi for the server and then made a Custom Application Group like this and it seems to work:&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="copilot.png" style="width: 455px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/28943iEB50120DA3FE0ECF/image-size/large?v=v2&amp;amp;px=999" role="button" title="copilot.png" alt="copilot.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Thanks for the help guys! &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 20 Dec 2024 13:55:57 GMT</pubDate>
    <dc:creator>JPR</dc:creator>
    <dc:date>2024-12-20T13:55:57Z</dc:date>
    <item>
      <title>Allowing access to a specific URL path</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236326#M45827</link>
      <description>&lt;P&gt;Hello there,&lt;/P&gt;&lt;P&gt;I have a server behind a firewall that doesn't and mustn't full internet access.&lt;/P&gt;&lt;P&gt;However, it needs to be possible to use Copilot on it and thus needs access to some specific URL paths as listed here:&amp;nbsp;&lt;A href="https://docs.github.com/en/copilot/managing-copilot/managing-github-copilot-in-your-organization/configuring-your-proxy-server-or-firewall-for-copilot" target="_blank"&gt;https://docs.github.com/en/copilot/managing-copilot/managing-github-copilot-in-your-organization/configuring-your-proxy-server-or-firewall-for-copilot&lt;/A&gt;&lt;/P&gt;&lt;P&gt;As mentioned elsewhere on here HTTPS Inspection is needed in order to achieve that so that has been enabled.&lt;/P&gt;&lt;P&gt;As far as I can see I then should be able to whitelist these URL paths in the above link by using a "Custom Application Site/Group", however, I don't seem to be able get the syntax right.&lt;/P&gt;&lt;P&gt;So my question is:&lt;/P&gt;&lt;P&gt;- Is it possible in the way I have described it above to allow access to a specific URL path?&lt;/P&gt;&lt;P&gt;And if so, how should I make the "Custom Application Site/Group".&lt;/P&gt;&lt;P&gt;And of course, if it has to be done in another way, I'd like to know that as well &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Thanks and best regards!&lt;/P&gt;</description>
      <pubDate>Thu, 19 Dec 2024 10:29:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236326#M45827</guid>
      <dc:creator>JPR</dc:creator>
      <dc:date>2024-12-19T10:29:20Z</dc:date>
    </item>
    <item>
      <title>Re: Allowing access to a specific URL path</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236331#M45828</link>
      <description>&lt;P&gt;Hi JPR,&lt;/P&gt;
&lt;P&gt;Yes you touch the neuralgic point, the HTTPs Inspection. You can have a test without enable this, but maybe the categorization won't work properly.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk92743" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk92743&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Feature - HTTPS Filtering&lt;/P&gt;
&lt;P&gt;Categorization of HTTPS sites without HTTPS inspection (passive HTTPS). Supports URL Filtering on &lt;STRONG&gt;HTTPS traffic without HTTPS inspection&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P&gt;To enable it, enable the URL Filtering blade:&lt;BR /&gt;In SmartDashboard, go to Application &amp;amp; URL Filtering tab -&amp;gt; Advanced -&amp;gt; Engine Settings -&amp;gt; Enable "Categorize HTTPS sites", and install Security Policy.&lt;/P&gt;
&lt;P&gt;----------------------------------------&lt;/P&gt;
&lt;P&gt;The custom group creation:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk165094" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk165094&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;(this speaks for itself)&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2024-12-19 12_11_49-New Application_Site.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/28921i9FF85F1C08AC6645/image-size/medium?v=v2&amp;amp;px=400" role="button" title="2024-12-19 12_11_49-New Application_Site.png" alt="2024-12-19 12_11_49-New Application_Site.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;Akos&lt;/P&gt;</description>
      <pubDate>Thu, 19 Dec 2024 11:24:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236331#M45828</guid>
      <dc:creator>AkosBakos</dc:creator>
      <dc:date>2024-12-19T11:24:48Z</dc:date>
    </item>
    <item>
      <title>Re: Allowing access to a specific URL path</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236390#M45848</link>
      <description>&lt;P&gt;I would follow what&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/28415"&gt;@AkosBakos&lt;/a&gt;&amp;nbsp;suggested. I have fully working ssl inspection lab in R81.20 jumbo 92, so can test anything needed.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 19 Dec 2024 15:57:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236390#M45848</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-19T15:57:24Z</dc:date>
    </item>
    <item>
      <title>Re: Allowing access to a specific URL path</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236466#M45853</link>
      <description>&lt;P&gt;Thanks, that all seems to work.&lt;/P&gt;&lt;P&gt;However, getting the Regex right seems to be another issue&lt;/P&gt;&lt;P&gt;So I want to allow traffic to github.com/login/&lt;/P&gt;&lt;P&gt;So ideally I want to make sure that e.g. "maliciousgithub.com/login/" and "github.com/loginmalicious/" or a combination of these doesn't work, however, I'm really struggling to achieve that.&lt;/P&gt;&lt;P&gt;I have checked "URLs are defined as Reuglar Expressions" and tried "github\.com/login/" but that doesn't work. Using "github\.com/login" does - but then also "github\.com/login1" works supposedly because there is a site on their server with that name (if I try "github.com\.com/loginmalicious" it says "Not found" because it doesn't exist).&lt;/P&gt;&lt;P&gt;I'm trying my configuration with "curl -k &lt;A href="https://github.com/login&amp;quot;" target="_blank"&gt;https://github.com/login"&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;Hope it makes sense &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 20 Dec 2024 10:46:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236466#M45853</guid>
      <dc:creator>JPR</dc:creator>
      <dc:date>2024-12-20T10:46:53Z</dc:date>
    </item>
    <item>
      <title>Re: Allowing access to a specific URL path</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236468#M45854</link>
      <description>&lt;P&gt;Just add custom application object with these 2 entries and it will work, I tested it in my lab.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;*&lt;SPAN&gt;maliciousgithub.com/login/*&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;*github.com/loginmalicious/*&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I never bother checking that option at the bottom for regular expression.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 20 Dec 2024 11:02:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236468#M45854</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-20T11:02:09Z</dc:date>
    </item>
    <item>
      <title>Re: Allowing access to a specific URL path</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236472#M45855</link>
      <description>&lt;P&gt;Here is what Im referring to.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;div class="lia-vid-container video-embed-center"&gt;&lt;div id="lia-vid-6366276160112w960h540r411" class="lia-video-brightcove-player-container"&gt;&lt;video-js data-video-id="6366276160112" data-account="6058022097001" data-player="default" data-embed="default" class="vjs-fluid" controls="" data-application-id="" style="width: 100%; height: 100%;"&gt;&lt;/video-js&gt;&lt;/div&gt;&lt;script src="https://players.brightcove.net/6058022097001/default_default/index.min.js"&gt;&lt;/script&gt;&lt;script&gt;(function() {  var wrapper = document.getElementById('lia-vid-6366276160112w960h540r411');  var videoEl = wrapper ? wrapper.querySelector('video-js') : null;  if (videoEl) {     if (window.videojs) {       window.videojs(videoEl).ready(function() {         this.on('loadedmetadata', function() {           this.el().querySelectorAll('.vjs-load-progress div[data-start]').forEach(function(bar) {             bar.setAttribute('role', 'presentation');             bar.setAttribute('aria-hidden', 'true');           });         });       });     }  }})();&lt;/script&gt;&lt;a class="video-embed-link" href="https://community.checkpoint.com/t5/video/gallerypage/video-id/6366276160112"&gt;(view in My Videos)&lt;/a&gt;&lt;/div&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 20 Dec 2024 12:07:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236472#M45855</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-20T12:07:34Z</dc:date>
    </item>
    <item>
      <title>Re: Allowing access to a specific URL path</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236481#M45857</link>
      <description>&lt;P&gt;Hi, what was the conclusion? Did you set up the HTTPs Inspection?&lt;/P&gt;</description>
      <pubDate>Fri, 20 Dec 2024 13:22:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236481#M45857</guid>
      <dc:creator>AkosBakos</dc:creator>
      <dc:date>2024-12-20T13:22:39Z</dc:date>
    </item>
    <item>
      <title>Re: Allowing access to a specific URL path</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236487#M45858</link>
      <description>&lt;P&gt;Also to Andy,&lt;/P&gt;&lt;P&gt;Yeah, I got it to work, and also ended up not using regular expressions.&lt;/P&gt;&lt;P&gt;I've enabled HTTPSi for the server and then made a Custom Application Group like this and it seems to work:&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="copilot.png" style="width: 455px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/28943iEB50120DA3FE0ECF/image-size/large?v=v2&amp;amp;px=999" role="button" title="copilot.png" alt="copilot.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Thanks for the help guys! &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 20 Dec 2024 13:55:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236487#M45858</guid>
      <dc:creator>JPR</dc:creator>
      <dc:date>2024-12-20T13:55:57Z</dc:date>
    </item>
    <item>
      <title>Re: Allowing access to a specific URL path</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236488#M45859</link>
      <description>&lt;P&gt;Great job!&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 20 Dec 2024 13:57:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Allowing-access-to-a-specific-URL-path/m-p/236488#M45859</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-20T13:57:10Z</dc:date>
    </item>
  </channel>
</rss>

