<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: What is the difference between interface topologies: Internet and Internal default route based? in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237063#M45984</link>
    <description>&lt;P&gt;Thats true, but then CP is not like Fortinet, where you have to define interfaces in the rules, so thats why I was saying it all depends on how routes are configured.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sat, 28 Dec 2024 13:05:42 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2024-12-28T13:05:42Z</dc:date>
    <item>
      <title>What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237010#M45957</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;What is the difference between the following interface topologies:&lt;/P&gt;&lt;P&gt;- Internet&lt;BR /&gt;- Internal -&amp;gt; network defined by the routes (the default route is configured on this interface)&lt;/P&gt;&lt;P&gt;Any references to the documentation/SKs?&lt;/P&gt;&lt;P&gt;How is it working in the real life?&lt;/P&gt;&lt;P&gt;I'm asking because I discovered some strange behaviours...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you in advance!&lt;/P&gt;</description>
      <pubDate>Fri, 27 Dec 2024 22:18:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237010#M45957</guid>
      <dc:creator>AlekzNet</dc:creator>
      <dc:date>2024-12-27T22:18:50Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237033#M45964</link>
      <description>&lt;P&gt;Internet is chosen when interface is considered external.&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 00:16:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237033#M45964</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-28T00:16:11Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237036#M45965</link>
      <description>&lt;P&gt;My question is about the difference in firewall's behaviour.&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 00:30:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237036#M45965</guid>
      <dc:creator>AlekzNet</dc:creator>
      <dc:date>2024-12-28T00:30:43Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237039#M45967</link>
      <description>&lt;P&gt;It all depends on the routing really. Internal IP can also be chosen as external interface.&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 00:36:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237039#M45967</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-28T00:36:58Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237040#M45968</link>
      <description>&lt;P&gt;That's what my question is about exactly &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&amp;nbsp; :&lt;/P&gt;&lt;P&gt;&amp;gt; It all depends on the routing really. Internal IP can also be chosen as external interface.&lt;/P&gt;&lt;P&gt;&amp;gt; Internal -&amp;gt; network defined by the routes (the default route is configured on this interface)&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 00:39:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237040#M45968</guid>
      <dc:creator>AlekzNet</dc:creator>
      <dc:date>2024-12-28T00:39:11Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237041#M45969</link>
      <description>&lt;P&gt;Network defined by routes...all that literally means is that if topology changes, no need to do anything or install policy. I always recommend that option.&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 00:42:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237041#M45969</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-28T00:42:32Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237042#M45970</link>
      <description>&lt;P&gt;Again, this is perfectly fine and understandable. But that does not answer my question &lt;span class="lia-unicode-emoji" title=":smiling_face_with_smiling_eyes:"&gt;😊&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 01:02:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237042#M45970</guid>
      <dc:creator>AlekzNet</dc:creator>
      <dc:date>2024-12-28T01:02:49Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237043#M45971</link>
      <description>&lt;P&gt;Your question was difference in fw behavior. If selected Internet, interface will be considered as external, 2nd option would be internal. Sorry if Im not understanding something else &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 01:11:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237043#M45971</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-28T01:11:20Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237044#M45972</link>
      <description>&lt;P&gt;The question is: If an internal interface has the default route configured through it, how would it be different from an external interface?&lt;/P&gt;&lt;P&gt;In other words. Two scenarios:&lt;/P&gt;&lt;P&gt;1. 3 ifaces: 1 Internet with the default route, 2 internals&lt;BR /&gt;2. 3 ifaces: all internals, but one of them has the default route.&lt;/P&gt;&lt;P&gt;Will there be any difference in how the firewall will treat the traffic going towards the default gateway? If yes, what is it?&lt;BR /&gt;Is it documented anywhere?&lt;BR /&gt;What is happening IRL?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Additional related questions:&lt;BR /&gt;- What does it mean, that the interface is internal or external? (Provided the routes are the same and/or the anti-spoofing is turned off)&lt;BR /&gt;- What is different in the traffic processing?&lt;BR /&gt;- Is it documented anywhere?&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 01:21:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237044#M45972</guid>
      <dc:creator>AlekzNet</dc:creator>
      <dc:date>2024-12-28T01:21:32Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237045#M45973</link>
      <description>&lt;P&gt;NOW I get it &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;AFAIK, regardless how interfaces are configured, routing will work depending on the IP address. So say for lots of firewalls, external interface can be configured as internal IP, but routing can still go through it.&lt;/P&gt;
&lt;P&gt;In your examples, say scenario 1, DG can be actual ISP upstream router and scenario 2 can be just lab ip address.&lt;/P&gt;
&lt;P&gt;But, maybe someone else can correct me if Im wrong.&lt;/P&gt;
&lt;P&gt;Good question btw!&lt;/P&gt;
&lt;P&gt;Difference in traffic processing? Maybe give an example. Is it documented anywhere? Not sure this would be specifically.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 01:33:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237045#M45973</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-28T01:33:41Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237046#M45974</link>
      <description>&lt;P&gt;I'm asking this question, because I stumbled upon some very unexpected behaviour here: &lt;A href="https://community.checkpoint.com/t5/Security-Gateways/How-to-disable-local-anti-spoofing-in-R81-20-cluster-with/m-p/236833/highlight/true#M45923" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/Security-Gateways/How-to-disable-local-anti-spoofing-in-R81-20-cluster-with/m-p/236833/highlight/true#M45923&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Hence, I'd like to know how it's supposed to work first. And if it does not work so IRL, another CP case is in order.&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 02:00:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237046#M45974</guid>
      <dc:creator>AlekzNet</dc:creator>
      <dc:date>2024-12-28T02:00:35Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237047#M45975</link>
      <description>&lt;P&gt;I cant comment without knowing specifics, but from my experience, 9 times out of 10, anti spoofing has to do with assymetric routing.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 02:07:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237047#M45975</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-28T02:07:14Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237048#M45976</link>
      <description>&lt;P&gt;Anti-spoofing is turned off.&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 02:09:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237048#M45976</guid>
      <dc:creator>AlekzNet</dc:creator>
      <dc:date>2024-12-28T02:09:50Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237049#M45977</link>
      <description>&lt;P&gt;If so, I would run ip r g on various ip addresses and make sure its right.&lt;/P&gt;
&lt;P&gt;ie:&lt;/P&gt;
&lt;P&gt;ip r g 8.8.8.8&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 02:33:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237049#M45977</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-28T02:33:32Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237051#M45978</link>
      <description>&lt;P&gt;Again, this is not what the question is about &lt;span class="lia-unicode-emoji" title=":grinning_face_with_smiling_eyes:"&gt;😄&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 03:09:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237051#M45978</guid>
      <dc:creator>AlekzNet</dc:creator>
      <dc:date>2024-12-28T03:09:14Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237052#M45979</link>
      <description>&lt;P&gt;K, I give up then &lt;span class="lia-unicode-emoji" title=":grinning_face_with_big_eyes:"&gt;😃&lt;/span&gt;&lt;span class="lia-unicode-emoji" title=":grinning_face_with_big_eyes:"&gt;😃&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 03:11:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237052#M45979</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-28T03:11:08Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237056#M45981</link>
      <description>&lt;P&gt;The firewall's application rules and threat prevention rules distinguish between external and internal traffic based on the defined topology settings.&lt;/P&gt;&lt;P&gt;For instance, the &lt;STRONG&gt;internet object&lt;/STRONG&gt; in application rules and the &lt;STRONG&gt;protected scope&lt;/STRONG&gt; configuration in anti-virus / threat emulation settings determine inspection based on the defined topology.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 05:23:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237056#M45981</guid>
      <dc:creator>Jarvis_Lin</dc:creator>
      <dc:date>2024-12-28T05:23:27Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237063#M45984</link>
      <description>&lt;P&gt;Thats true, but then CP is not like Fortinet, where you have to define interfaces in the rules, so thats why I was saying it all depends on how routes are configured.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 13:05:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237063#M45984</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-12-28T13:05:42Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237077#M45996</link>
      <description>&lt;P&gt;I stated it already: there is a default route through the interface in question in both cases.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 28 Dec 2024 23:46:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237077#M45996</guid>
      <dc:creator>AlekzNet</dc:creator>
      <dc:date>2024-12-28T23:46:27Z</dc:date>
    </item>
    <item>
      <title>Re: What is the difference between interface topologies: Internet and Internal default route based?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237078#M45997</link>
      <description>&lt;P&gt;&amp;gt; the &lt;STRONG&gt;protected scope&lt;/STRONG&gt; configuration&lt;/P&gt;&lt;P&gt;By default the protected scope is "Any".&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;gt; the &lt;STRONG&gt;internet object&lt;/STRONG&gt; in application rules and the &lt;STRONG&gt;protected scope&lt;/STRONG&gt; configuration in anti-virus / threat emulation settings determine inspection based on the defined topology.&lt;/P&gt;&lt;P&gt;In other words, you are stating, that AV/AB/IPS signatures will work differently, if the the interface is assigned to the internal or external topology, right? What is this difference? Provided the IPS and firewall rules are all "Any"s?&lt;/P&gt;</description>
      <pubDate>Mon, 30 Dec 2024 15:22:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/What-is-the-difference-between-interface-topologies-Internet-and/m-p/237078#M45997</guid>
      <dc:creator>AlekzNet</dc:creator>
      <dc:date>2024-12-30T15:22:26Z</dc:date>
    </item>
  </channel>
</rss>

