<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic BLOCK PSIPHON VPN in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265755#M52337</link>
    <description>&lt;P&gt;&lt;STRONG&gt;BLOCK PSIPHON VPN&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;I am trying to block Psiphon VPN on a Check Point firewall, but I am facing an issue.&lt;/P&gt;&lt;P&gt;I first attempted to block Psiphon using Application Control &amp;amp; URL Filtering.&lt;BR /&gt;The rule shows Drop logs, however Psiphon VPN continues to work at the user end.&lt;/P&gt;&lt;P&gt;Next, I enabled HTTPS Inspection and applied a block policy.&lt;BR /&gt;The logs show traffic as Inspected, but Psiphon VPN is still able to connect successfully.&lt;/P&gt;&lt;P&gt;I think that Psiphon VPN is bypassing the Check Point firewall, even though the logs indicate the traffic is being dropped/inspected.&lt;/P&gt;&lt;P&gt;Could anyone please advise on this,&lt;/P&gt;&lt;P&gt;Is there a recommended or proven method to block Psiphon VPN on Check Point?&lt;/P&gt;&lt;P&gt;Is this a known limitation, and should this be raised with Check Point TAC?&lt;/P&gt;&lt;P&gt;Any inputs or best-practice recommendations would be greatly appreciated.&lt;/P&gt;</description>
    <pubDate>Fri, 19 Dec 2025 05:02:35 GMT</pubDate>
    <dc:creator>vishnukanth</dc:creator>
    <dc:date>2025-12-19T05:02:35Z</dc:date>
    <item>
      <title>BLOCK PSIPHON VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265755#M52337</link>
      <description>&lt;P&gt;&lt;STRONG&gt;BLOCK PSIPHON VPN&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;I am trying to block Psiphon VPN on a Check Point firewall, but I am facing an issue.&lt;/P&gt;&lt;P&gt;I first attempted to block Psiphon using Application Control &amp;amp; URL Filtering.&lt;BR /&gt;The rule shows Drop logs, however Psiphon VPN continues to work at the user end.&lt;/P&gt;&lt;P&gt;Next, I enabled HTTPS Inspection and applied a block policy.&lt;BR /&gt;The logs show traffic as Inspected, but Psiphon VPN is still able to connect successfully.&lt;/P&gt;&lt;P&gt;I think that Psiphon VPN is bypassing the Check Point firewall, even though the logs indicate the traffic is being dropped/inspected.&lt;/P&gt;&lt;P&gt;Could anyone please advise on this,&lt;/P&gt;&lt;P&gt;Is there a recommended or proven method to block Psiphon VPN on Check Point?&lt;/P&gt;&lt;P&gt;Is this a known limitation, and should this be raised with Check Point TAC?&lt;/P&gt;&lt;P&gt;Any inputs or best-practice recommendations would be greatly appreciated.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Dec 2025 05:02:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265755#M52337</guid>
      <dc:creator>vishnukanth</dc:creator>
      <dc:date>2025-12-19T05:02:35Z</dc:date>
    </item>
    <item>
      <title>Re: BLOCK PSIPHON VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265758#M52339</link>
      <description>&lt;P&gt;We are missing some detail for us to be able to help effectively:&lt;/P&gt;
&lt;P&gt;- What additional blades are enabled?&lt;/P&gt;
&lt;P&gt;- What does the access policy look like for outbound traffic including things like SSH, QUIC etc?&lt;/P&gt;
&lt;P&gt;- What version/JHF is the gateway?&lt;/P&gt;</description>
      <pubDate>Fri, 19 Dec 2025 08:07:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265758#M52339</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2025-12-19T08:07:25Z</dc:date>
    </item>
    <item>
      <title>Re: BLOCK PSIPHON VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265759#M52340</link>
      <description>&lt;P&gt;Independent of your special use case, there is an old thread apparently discussing same topic:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://community.checkpoint.com/t5/Security-Gateways/Block-Psiphon-2023/td-p/177455" target="_blank"&gt;Solved: Block Psiphon 2023 - Check Point CheckMates&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Solution was&amp;nbsp;&lt;SPAN&gt;an offline package to update the Psiphon signature. Maybe it fits to your case, then contacting TAC would be a good idea.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Dec 2025 08:13:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265759#M52340</guid>
      <dc:creator>Vincent_Bacher</dc:creator>
      <dc:date>2025-12-19T08:13:39Z</dc:date>
    </item>
    <item>
      <title>Re: BLOCK PSIPHON VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265760#M52341</link>
      <description>&lt;P&gt;Hi Chris,&lt;/P&gt;&lt;P&gt;1 the enabled blades are firewall,IPSEC VPN,Mobile access,APCL &amp;amp; URLF,Monitoring and we did the https inspection&lt;/P&gt;&lt;P&gt;2 the outbound traffic including things like 80,443,53 and we blocked the QUIC protocol&lt;/P&gt;&lt;P&gt;3 Next we created a HTTPS inspection rule with any services &amp;amp; default services and set the rule to inspect but still its working perfectly.&lt;/P&gt;&lt;P&gt;4 Gateways are installed with JHF T119&lt;/P&gt;</description>
      <pubDate>Fri, 19 Dec 2025 08:56:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265760#M52341</guid>
      <dc:creator>vishnukanth</dc:creator>
      <dc:date>2025-12-19T08:56:00Z</dc:date>
    </item>
    <item>
      <title>Re: BLOCK PSIPHON VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265828#M52351</link>
      <description>&lt;P&gt;I assume R81.20, then?&lt;BR /&gt;From recent TAC cases, it seems others are experiencing similar issues.&lt;BR /&gt;Problems blocking this app have been reported several times over the last few years.&lt;BR /&gt;Suggest opening a TAC case so we can investigate further.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Dec 2025 17:18:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265828#M52351</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-12-19T17:18:19Z</dc:date>
    </item>
    <item>
      <title>Re: BLOCK PSIPHON VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265831#M52352</link>
      <description>&lt;P&gt;Is this what you used?&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/32520iFCC10A99B7937E7D/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 19 Dec 2025 17:39:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265831#M52352</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-12-19T17:39:04Z</dc:date>
    </item>
    <item>
      <title>Re: BLOCK PSIPHON VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265841#M52357</link>
      <description>&lt;P&gt;Another thing I would try is also add custom app group and include *psiphon* in it and see if that works by blocking it.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Dec 2025 23:14:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265841#M52357</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-12-19T23:14:49Z</dc:date>
    </item>
    <item>
      <title>Re: BLOCK PSIPHON VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265843#M52358</link>
      <description>&lt;P&gt;Hi Rock,&lt;/P&gt;&lt;P&gt;I tried with custom application group,URL, categories as well.. but still its same&lt;/P&gt;&lt;P&gt;I cant able to block this Application with the CP firewall&lt;/P&gt;</description>
      <pubDate>Sat, 20 Dec 2025 07:26:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265843#M52358</guid>
      <dc:creator>vishnukanth</dc:creator>
      <dc:date>2025-12-20T07:26:59Z</dc:date>
    </item>
    <item>
      <title>Re: BLOCK PSIPHON VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265844#M52359</link>
      <description>&lt;P&gt;yes this is the application Iam trying to Block&lt;/P&gt;</description>
      <pubDate>Sat, 20 Dec 2025 07:28:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265844#M52359</guid>
      <dc:creator>vishnukanth</dc:creator>
      <dc:date>2025-12-20T07:28:21Z</dc:date>
    </item>
    <item>
      <title>Re: BLOCK PSIPHON VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265845#M52360</link>
      <description>&lt;P&gt;Do you have https inspection enabled? Nm, I see you do...I would open TAC case and see what they say.&lt;/P&gt;</description>
      <pubDate>Sat, 20 Dec 2025 11:25:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265845#M52360</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-12-20T11:25:46Z</dc:date>
    </item>
    <item>
      <title>Re: BLOCK PSIPHON VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265846#M52361</link>
      <description>&lt;P&gt;yes I have enabled the HTTPS INSPECTION! and the VPN is not blocked by CP firewall.&lt;/P&gt;</description>
      <pubDate>Sat, 20 Dec 2025 13:32:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BLOCK-PSIPHON-VPN/m-p/265846#M52361</guid>
      <dc:creator>vishnukanth</dc:creator>
      <dc:date>2025-12-20T13:32:54Z</dc:date>
    </item>
  </channel>
</rss>

