<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Geoip Protection outubound Enforcement in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237504#M46098</link>
    <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When I do the application with the updated objects it gives the same error shown above, I believe it is something in the base of the checkpoint that inserted this ips incorrectly&lt;/P&gt;</description>
    <pubDate>Fri, 03 Jan 2025 11:37:01 GMT</pubDate>
    <dc:creator>lluner</dc:creator>
    <dc:date>2025-01-03T11:37:01Z</dc:date>
    <item>
      <title>Geoip Protection outubound Enforcement</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237463#M46094</link>
      <description>&lt;P&gt;hi&lt;/P&gt;
&lt;P&gt;Could someone explain why this is happening&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="geoip2.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/29076i8956C9465D58CEC4/image-size/large?v=v2&amp;amp;px=999" role="button" title="geoip2.png" alt="geoip2.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jan 2025 19:44:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237463#M46094</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2025-01-02T19:44:55Z</dc:date>
    </item>
    <item>
      <title>Re: Geoip Protection outubound Enforcement</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237472#M46095</link>
      <description>&lt;P&gt;Appears its related to default geo policy. You definitely should be using updatable objects for geo policy starting R80.20 version. I would examine current policy and see how Brazil is configured.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jan 2025 20:52:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237472#M46095</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-01-02T20:52:46Z</dc:date>
    </item>
    <item>
      <title>Re: Geoip Protection outubound Enforcement</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237473#M46096</link>
      <description>&lt;P&gt;I assume you wonder why it is blocked? Maybe this SK helps&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk126172" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk126172&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Or something else is wrong?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Jan 2025 21:15:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237473#M46096</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2025-01-02T21:15:48Z</dc:date>
    </item>
    <item>
      <title>Re: Geoip Protection outubound Enforcement</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237504#M46098</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When I do the application with the updated objects it gives the same error shown above, I believe it is something in the base of the checkpoint that inserted this ips incorrectly&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2025 11:37:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237504#M46098</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2025-01-03T11:37:01Z</dc:date>
    </item>
    <item>
      <title>Re: Geoip Protection outubound Enforcement</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237519#M46105</link>
      <description>&lt;P&gt;So if you try using geo updata ble objects and I assume you disabled legacy geo policy, you get same error?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2025 13:29:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237519#M46105</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-01-03T13:29:58Z</dc:date>
    </item>
    <item>
      <title>Re: Geoip Protection outubound Enforcement</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237563#M46128</link>
      <description>&lt;P&gt;hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I didn't disable the default policy of GEO, I created a rule on the layer network with the update objets. Even so, the error happened, the access to the Brazilian continent was blocked&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2025 19:31:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237563#M46128</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2025-01-03T19:31:56Z</dc:date>
    </item>
    <item>
      <title>Re: Geoip Protection outubound Enforcement</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237564#M46129</link>
      <description>&lt;P&gt;Right, but whole point of using updatable objects for countries is to disable legacy geo policy.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2025 19:34:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237564#M46129</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-01-03T19:34:01Z</dc:date>
    </item>
    <item>
      <title>Re: Geoip Protection outubound Enforcement</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237566#M46130</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Even applying the rule does not work with the update objects. I believe that the problem is at the base?&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2025 19:41:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237566#M46130</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2025-01-03T19:41:53Z</dc:date>
    </item>
    <item>
      <title>Re: Geoip Protection outubound Enforcement</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237567#M46131</link>
      <description>&lt;P&gt;K, just to make sure we are on the same page here..are you trying to block/allow given country or specific IP from that country or what exactly?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2025 19:47:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237567#M46131</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-01-03T19:47:13Z</dc:date>
    </item>
    <item>
      <title>Re: Geoip Protection outubound Enforcement</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237568#M46132</link>
      <description>&lt;P&gt;The legacy Geo Policy is enforced well before Geo Updatable Objects, at roughly the same time as antispoofing enforcement.&amp;nbsp; So if traffic is dropped by the legacy Geo Policy it will be dropped regardless of how your main policy layers are configured with Geo Updatable Objects.&amp;nbsp; To disable the legacy Geo Policy:&lt;/P&gt;
&lt;P&gt;1) Under Shared Policies...Geo Policy...select Policy&lt;/P&gt;
&lt;P&gt;2) Make sure "Default Geo Policy" is selected in the dropdown at the top of the screen&lt;/P&gt;
&lt;P&gt;3) Select Inactive or "Monitor Only", your choice&lt;/P&gt;
&lt;P&gt;4) Using Geo Updatable objects, ban any countries you want using Geo Updatable Objects in the first layer of your policy package&lt;/P&gt;
&lt;P&gt;5) Publish and install policy.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2025 19:52:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237568#M46132</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2025-01-03T19:52:43Z</dc:date>
    </item>
    <item>
      <title>Re: Geoip Protection outubound Enforcement</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237569#M46133</link>
      <description>&lt;P&gt;I guess I thought I mentioned to disable it previously, but my bad, I did not.&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/87055"&gt;@lluner&lt;/a&gt;&amp;nbsp;, thats what you have to do first.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 03 Jan 2025 19:57:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Geoip-Protection-outubound-Enforcement/m-p/237569#M46133</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-01-03T19:57:56Z</dc:date>
    </item>
  </channel>
</rss>

