<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Check Point Online Web Service Response Time in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241078#M46769</link>
    <description>&lt;P&gt;Thanks for fast response&lt;span class="lia-unicode-emoji" title=":grinning_face:"&gt;😀&lt;/span&gt;&lt;BR /&gt;Reason I want to change this is, as shown in below picture, prevent those DNS requests. If you suggesting not to change it, is there some alternative method to block this connections?&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2025-02-13 104723.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/29597i690E9DCE59A58B99/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2025-02-13 104723.png" alt="Screenshot 2025-02-13 104723.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2025-02-13 105723.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/29598i3DF68415D710AD4C/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2025-02-13 105723.png" alt="Screenshot 2025-02-13 105723.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 13 Feb 2025 03:02:18 GMT</pubDate>
    <dc:creator>usukhbayar_g</dc:creator>
    <dc:date>2025-02-13T03:02:18Z</dc:date>
    <item>
      <title>Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241072#M46767</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Currently, the Website Categorization mode is set to &lt;STRONG&gt;Background Mode&lt;/STRONG&gt;, and I am planning to switch it to &lt;STRONG&gt;Hold Mode&lt;/STRONG&gt;. Before making this change, I would like to measure the response time between the Security Gateway and the Check Point Online Web Service to assess the potential impact.&lt;/P&gt;&lt;P&gt;I understand that the Security Gateway maintains a cache and only queries the Online Web Service when a URL is not found locally. However, I want to ensure that the response time is within acceptable limits before implementing this change.&lt;/P&gt;&lt;P&gt;Could you advise on the best method to accurately measure this response time?&lt;/P&gt;&lt;P&gt;Best regards&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 02:23:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241072#M46767</guid>
      <dc:creator>usukhbayar_g</dc:creator>
      <dc:date>2025-02-13T02:23:17Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241073#M46768</link>
      <description>&lt;P&gt;&lt;STRONG data-start="891" data-end="904"&gt;Hold Mode&lt;/STRONG&gt;: In this mode, if a website's category isn't found in the local cache, the user's request is paused until the Check Point Online Web Service completes the categorization. This ensures that only categorized content is accessed but may introduce delays, especially if the service's response time is prolonged.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R80.30/SmartConsole_OLH/EN/html_frameset.htm?topic=documents/R80.30/SmartConsole_OLH/EN/_y0cBHeYySEffG9KvmKSdA2" target="_blank" rel="noopener"&gt;https://sc1.checkpoint.com/documents/R80.30/SmartConsole_OLH/EN/html_frameset.htm?topic=documents/R80.30/SmartConsole_OLH/EN/_y0cBHeYySEffG9KvmKSdA2&lt;/A&gt;&lt;/P&gt;
&lt;P data-start="1252" data-end="1736"&gt;Factors affecting the response time of the Check Point Online Web Service include network latency, current server load, and the efficiency of the service itself. To optimize performance, it's advisable to use the default Background Mode, which allows user requests to proceed while categorization occurs concurrently. Additionally, ensuring that the local cache is adequately sized and maintained can reduce the frequency of external queries, thereby improving overall response times.&lt;/P&gt;
&lt;P data-start="1738" data-end="1912"&gt;If users experience significant delays or performance issues, reviewing these settings and monitoring network conditions can help identify and mitigate potential bottlenecks.&lt;/P&gt;
&lt;P data-start="1738" data-end="1912"&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 02:47:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241073#M46768</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-02-13T02:47:37Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241078#M46769</link>
      <description>&lt;P&gt;Thanks for fast response&lt;span class="lia-unicode-emoji" title=":grinning_face:"&gt;😀&lt;/span&gt;&lt;BR /&gt;Reason I want to change this is, as shown in below picture, prevent those DNS requests. If you suggesting not to change it, is there some alternative method to block this connections?&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2025-02-13 104723.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/29597i690E9DCE59A58B99/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2025-02-13 104723.png" alt="Screenshot 2025-02-13 104723.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2025-02-13 105723.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/29598i3DF68415D710AD4C/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2025-02-13 105723.png" alt="Screenshot 2025-02-13 105723.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 03:02:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241078#M46769</guid>
      <dc:creator>usukhbayar_g</dc:creator>
      <dc:date>2025-02-13T03:02:18Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241079#M46770</link>
      <description>&lt;P&gt;I am suggesting to CHANGE it &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;I always found it works better with hold setting, specially if you use ssl inspection. Btw, background option is better to keep for threat prevention.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 03:04:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241079#M46770</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-02-13T03:04:41Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241080#M46771</link>
      <description>&lt;P&gt;Thank you&lt;BR /&gt;&lt;BR /&gt;Is there any way to check response time between Security Gateway and Online Web Service? I pinged address (assumed cws.checkpoint.com used for this).&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 03:09:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241080#M46771</guid>
      <dc:creator>usukhbayar_g</dc:creator>
      <dc:date>2025-02-13T03:09:15Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241081#M46772</link>
      <description>&lt;P&gt;tracepath cws.checkpoint.com&lt;/P&gt;
&lt;P&gt;tracepath updates.checkpoint.com&lt;/P&gt;
&lt;P&gt;Just do it from expert mode.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 03:16:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241081#M46772</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-02-13T03:16:10Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241083#M46773</link>
      <description>&lt;P&gt;Example from my R82 lab, though it probably looks a bit different considering I was connected to 3rd party SASE provider.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;[Expert@R82:0]# tracepath cws.checkpoint.com&lt;BR /&gt;1?: [LOCALHOST] pmtu 1500&lt;BR /&gt;1: 172.16.10.1 (172.16.10.1) 2.079ms&lt;BR /&gt;2: unassigned-209.3.46.173.net.blink.ca (173.46.3.209) 1.674ms&lt;BR /&gt;3: unallocated-static.rogers.com (72.142.86.37) 1.766ms&lt;BR /&gt;4: 209.148.225.138 (209.148.225.138) 2.382ms&lt;BR /&gt;5: 209.148.225.142 (209.148.225.142) 2.585ms&lt;BR /&gt;6: 24.156.145.130 (24.156.145.130) 3.543ms&lt;BR /&gt;7: 9044-cgw01.wlfdle.rmgt.net.rogers.com (209.148.230.45) 3.281ms&lt;BR /&gt;8: 9402-cgw01.bloor.rmgt.net.rogers.com (209.148.235.233) 4.100ms&lt;BR /&gt;9: 69.63.248.57 (69.63.248.57) 10.008ms&lt;BR /&gt;10: 209.148.230.134 (209.148.230.134) 20.874ms&lt;BR /&gt;11: no reply&lt;BR /&gt;12: ae35.r02.border101.ewr04.fab.netarch.akamai.com (23.203.154.47) 25.456ms&lt;BR /&gt;13: no reply&lt;BR /&gt;14: no reply&lt;BR /&gt;15: no reply&lt;BR /&gt;16: a23-209-72-17.deploy.static.akamaitechnologies.com (23.209.72.17) asymm 17 20.077ms reached&lt;BR /&gt;Resume: pmtu 1500 hops 16 back 17&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 03:52:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241083#M46773</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-02-13T03:52:24Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241084#M46774</link>
      <description>&lt;P&gt;I got continious no reply message with tracepath command (don't know why xD). Instead I used traceroute.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 03:57:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241084#M46774</guid>
      <dc:creator>usukhbayar_g</dc:creator>
      <dc:date>2025-02-13T03:57:33Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241085#M46775</link>
      <description>&lt;P&gt;No sweat, just do below...either regular ping, or you can do many options with ping. I just used default packet size, 4096 bytes.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;[Expert@R82:0]# ping -s 4096 updates.checkpoint.com&lt;BR /&gt;PING e17340.dscd.akamaiedge.net (23.199.50.18) 4096(4124) bytes of data.&lt;BR /&gt;4104 bytes from a23-199-50-18.deploy.static.akamaitechnologies.com (23.199.50.18): icmp_seq=1 ttl=48 time=20.2 ms&lt;BR /&gt;4104 bytes from a23-199-50-18.deploy.static.akamaitechnologies.com (23.199.50.18): icmp_seq=2 ttl=48 time=18.8 ms&lt;BR /&gt;4104 bytes from a23-199-50-18.deploy.static.akamaitechnologies.com (23.199.50.18): icmp_seq=3 ttl=48 time=18.9 ms&lt;BR /&gt;4104 bytes from a23-199-50-18.deploy.static.akamaitechnologies.com (23.199.50.18): icmp_seq=4 ttl=48 time=19.0 ms&lt;BR /&gt;4104 bytes from a23-199-50-18.deploy.static.akamaitechnologies.com (23.199.50.18): icmp_seq=5 ttl=48 time=18.9 ms&lt;BR /&gt;4104 bytes from a23-199-50-18.deploy.static.akamaitechnologies.com (23.199.50.18): icmp_seq=6 ttl=48 time=18.8 ms&lt;BR /&gt;4104 bytes from a23-199-50-18.deploy.static.akamaitechnologies.com (23.199.50.18): icmp_seq=7 ttl=48 time=18.9 ms&lt;BR /&gt;^C&lt;BR /&gt;--- e17340.dscd.akamaiedge.net ping statistics ---&lt;BR /&gt;7 packets transmitted, 7 received, 0% packet loss, time 6005ms&lt;BR /&gt;rtt min/avg/max/mdev = 18.821/19.109/20.205/0.485 ms&lt;BR /&gt;[Expert@R82:0]#&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 04:01:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241085#M46775</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-02-13T04:01:00Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241086#M46776</link>
      <description>&lt;P&gt;Got it, you mentioned background option is better to keep for threat prevention. Can you describe it little more?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 04:16:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241086#M46776</guid>
      <dc:creator>usukhbayar_g</dc:creator>
      <dc:date>2025-02-13T04:16:33Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241087#M46777</link>
      <description>&lt;P&gt;I believe its in threat prevention admin guide. I will check in lab tomorrow.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 04:23:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241087#M46777</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-02-13T04:23:52Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point Online Web Service Response Time</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241088#M46778</link>
      <description>&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/CP_R81.20_ThreatPrevention_AdminGuide.pdf" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/CP_R81.20_ThreatPrevention_AdminGuide.pdf&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Page 350&lt;/P&gt;</description>
      <pubDate>Thu, 13 Feb 2025 04:37:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-Online-Web-Service-Response-Time/m-p/241088#M46778</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-02-13T04:37:54Z</dc:date>
    </item>
  </channel>
</rss>

