<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Generic Data Center HTTPS connection in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Generic-Data-Center-HTTPS-connection/m-p/245417#M47801</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/64803"&gt;@AaronCP&lt;/a&gt;&amp;nbsp; this is exactly what I was after as I hadn't yet spent any time investigating myself so thank you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 01 Apr 2025 21:16:43 GMT</pubDate>
    <dc:creator>cdav</dc:creator>
    <dc:date>2025-04-01T21:16:43Z</dc:date>
    <item>
      <title>Generic Data Center HTTPS connection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Generic-Data-Center-HTTPS-connection/m-p/156517#M26851</link>
      <description>&lt;P&gt;Hi All!&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The Generic Data Center resource has certificate issued by 3rd party CA (internal CA). During connection procedure we need to approve certificate. The issue is the expiration time of the certificate is 4 days due to some internal reasons. Every 4 days the certificate expired and the Data Center is not available. New approval is needed after that. How we can avoid the situation with every 4 days approvals? May be we can add the CA to trusted or some how else?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Sep 2022 13:16:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Generic-Data-Center-HTTPS-connection/m-p/156517#M26851</guid>
      <dc:creator>k_schekotoff</dc:creator>
      <dc:date>2022-09-05T13:16:00Z</dc:date>
    </item>
    <item>
      <title>Re: Generic Data Center HTTPS connection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Generic-Data-Center-HTTPS-connection/m-p/245319#M47780</link>
      <description>&lt;P&gt;Is anyone able to provide information here? I am looking to utilise generic data center object and the file would be hosted somewhere that would require TLS.&lt;/P&gt;</description>
      <pubDate>Tue, 01 Apr 2025 07:54:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Generic-Data-Center-HTTPS-connection/m-p/245319#M47780</guid>
      <dc:creator>cdav</dc:creator>
      <dc:date>2025-04-01T07:54:25Z</dc:date>
    </item>
    <item>
      <title>Re: Generic Data Center HTTPS connection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Generic-Data-Center-HTTPS-connection/m-p/245383#M47790</link>
      <description>&lt;P&gt;Have you tried adding the relevant CA to the trusted store?&lt;BR /&gt;This is configured with HTTPS Inspection, which has to be done in SmartDashboard prior to R82.&lt;BR /&gt;Otherwise, you'd have to ask TAC.&lt;/P&gt;</description>
      <pubDate>Tue, 01 Apr 2025 15:37:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Generic-Data-Center-HTTPS-connection/m-p/245383#M47790</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-04-01T15:37:24Z</dc:date>
    </item>
    <item>
      <title>Re: Generic Data Center HTTPS connection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Generic-Data-Center-HTTPS-connection/m-p/245398#M47792</link>
      <description>&lt;P&gt;Hey &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/37333"&gt;@cdav&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;I referenced this issue on&amp;nbsp;&lt;A href="https://community.checkpoint.com/t5/Cloud-Network-Security/Azure-Data-Center-Objects-Inaccessible/m-p/244722#M5283" target="_blank" rel="noopener"&gt;this thread&lt;/A&gt;&amp;nbsp;recently. It's operating as designed - if you were targeting a JSON file hosted on an external GitHub repo for your IP feed, if the certificate changes, you'd want to update the certificate to avoid any secuirty issues. As a result, the gateway will clear the object cache until you accept the new certificate, impacting traffic in the process.&lt;/P&gt;
&lt;P&gt;This is a current concern of ours. We're starting to use more of these objects in our production firewall policies to enable application owners to automate traffic flows specific to their application. It's become crucial we track certificate expiry dates to avoid impact in production. I've got an open SR with our Diamond Engineer to investigate possible workarounds to this issue. I'll update this thread if I get anywhere with it!&lt;/P&gt;</description>
      <pubDate>Tue, 01 Apr 2025 18:44:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Generic-Data-Center-HTTPS-connection/m-p/245398#M47792</guid>
      <dc:creator>AaronCP</dc:creator>
      <dc:date>2025-04-01T18:44:45Z</dc:date>
    </item>
    <item>
      <title>Re: Generic Data Center HTTPS connection</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Generic-Data-Center-HTTPS-connection/m-p/245417#M47801</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/64803"&gt;@AaronCP&lt;/a&gt;&amp;nbsp; this is exactly what I was after as I hadn't yet spent any time investigating myself so thank you.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 01 Apr 2025 21:16:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Generic-Data-Center-HTTPS-connection/m-p/245417#M47801</guid>
      <dc:creator>cdav</dc:creator>
      <dc:date>2025-04-01T21:16:43Z</dc:date>
    </item>
  </channel>
</rss>

