<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Check Point allows HTTP/HTTPS without rule in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-allows-HTTP-HTTPS-without-rule/m-p/252335#M49395</link>
    <description>&lt;P&gt;Have you already reviewed sk105740, sk180808 ?&lt;/P&gt;</description>
    <pubDate>Tue, 01 Jul 2025 12:19:03 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2025-07-01T12:19:03Z</dc:date>
    <item>
      <title>Check Point allows HTTP/HTTPS without rule</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-allows-HTTP-HTTPS-without-rule/m-p/252320#M49392</link>
      <description>&lt;P&gt;I'm using Check Point R82. I’ve configured NAT for ports 80 and 443 from the internet to a backend server. However, I noticed that &lt;STRONG&gt;HTTP/HTTPS traffic is reaching the backend even though no explicit policy rule has been created to allow it&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;I suspect some &lt;STRONG&gt;Implied Rule&lt;/STRONG&gt; might be allowing this by default.&lt;/P&gt;&lt;P&gt;&amp;nbsp;I tried disabling some implied rule options but it didn’t work — is there any official or correct way to do this in R82?&lt;/P&gt;&lt;P&gt;Thanks in advance!&lt;/P&gt;</description>
      <pubDate>Tue, 01 Jul 2025 07:05:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-allows-HTTP-HTTPS-without-rule/m-p/252320#M49392</guid>
      <dc:creator>vanhieuptit4</dc:creator>
      <dc:date>2025-07-01T07:05:12Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point allows HTTP/HTTPS without rule</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-allows-HTTP-HTTPS-without-rule/m-p/252321#M49393</link>
      <description>&lt;P&gt;Do you see this traffic in the traffic logs and if so can you paste it here?&lt;/P&gt;</description>
      <pubDate>Tue, 01 Jul 2025 07:12:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-allows-HTTP-HTTPS-without-rule/m-p/252321#M49393</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2025-07-01T07:12:22Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point allows HTTP/HTTPS without rule</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-allows-HTTP-HTTPS-without-rule/m-p/252334#M49394</link>
      <description>&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="implied log.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/30849i84E29D7909C7C5BB/image-size/large?v=v2&amp;amp;px=999" role="button" title="implied log.png" alt="implied log.png" /&gt;&lt;/span&gt;this is log of firewall&lt;/P&gt;</description>
      <pubDate>Tue, 01 Jul 2025 12:07:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-allows-HTTP-HTTPS-without-rule/m-p/252334#M49394</guid>
      <dc:creator>vanhieuptit4</dc:creator>
      <dc:date>2025-07-01T12:07:40Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point allows HTTP/HTTPS without rule</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-allows-HTTP-HTTPS-without-rule/m-p/252335#M49395</link>
      <description>&lt;P&gt;Have you already reviewed sk105740, sk180808 ?&lt;/P&gt;</description>
      <pubDate>Tue, 01 Jul 2025 12:19:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-allows-HTTP-HTTPS-without-rule/m-p/252335#M49395</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-07-01T12:19:03Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point allows HTTP/HTTPS without rule</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-allows-HTTP-HTTPS-without-rule/m-p/252377#M49402</link>
      <description>&lt;P&gt;Your NAT rule does not work because rule 0 goes before any other custom made rules.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I assume you use external VIP IP of the firewall. If you use any other IP you have same issue? If you really want to use VIP IP you can follow this sk&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk178087" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk178087&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 01 Jul 2025 20:09:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Check-Point-allows-HTTP-HTTPS-without-rule/m-p/252377#M49402</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2025-07-01T20:09:12Z</dc:date>
    </item>
  </channel>
</rss>

