<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Security gateway license scheme in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Security-gateway-license-scheme/m-p/49710#M86716</link>
    <description>&lt;P&gt;At least at one point the gateway would count all unique source IP addresses that would show up inbound on all interfaces marked as Internal in the firewall/cluster topology.&amp;nbsp; When you went over the limit, a warning would be issued in the firewall traffic logs (and syslog as well) but firewall functionality would not be otherwise affected (usually, but see below).&amp;nbsp; I don't know if recent versions of gateway code still do this "counting" as I haven't seen this warning message in a very long time.&lt;/P&gt;
&lt;P&gt;I'm intimately familiar with this mechanism, see the link below for a trip down memory lane for those of you that have used Check Point for more than 15 years...&lt;/P&gt;
&lt;P&gt;&lt;A href="https://seclists.org/bugtraq/2001/Jan/282" target="_blank" rel="noopener"&gt;https&lt;span class="lia-unicode-emoji" title=":confused_face:"&gt;😕&lt;/span&gt;/seclists.org/bugtraq/2001/Jan/282&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 03 Apr 2019 12:10:10 GMT</pubDate>
    <dc:creator>Timothy_Hall</dc:creator>
    <dc:date>2019-04-03T12:10:10Z</dc:date>
    <item>
      <title>Security gateway license scheme</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Security-gateway-license-scheme/m-p/49653#M86715</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;Currently, I had customer who has a query on the purchased sku license :&amp;nbsp;&lt;SPAN&gt;CPSG-C-2-500 which is 2 cores limited and 500 limited users. My question here is how is the 500 users count? Is it based on IP of internal users, gateway or router? Will the firewall let the traffic bypassed if the environment&amp;nbsp;is exceed 500 users?&lt;BR /&gt;&lt;BR /&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2019 03:53:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Security-gateway-license-scheme/m-p/49653#M86715</guid>
      <dc:creator>Wei_Soon_Heng</dc:creator>
      <dc:date>2019-04-03T03:53:10Z</dc:date>
    </item>
    <item>
      <title>Re: Security gateway license scheme</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Security-gateway-license-scheme/m-p/49710#M86716</link>
      <description>&lt;P&gt;At least at one point the gateway would count all unique source IP addresses that would show up inbound on all interfaces marked as Internal in the firewall/cluster topology.&amp;nbsp; When you went over the limit, a warning would be issued in the firewall traffic logs (and syslog as well) but firewall functionality would not be otherwise affected (usually, but see below).&amp;nbsp; I don't know if recent versions of gateway code still do this "counting" as I haven't seen this warning message in a very long time.&lt;/P&gt;
&lt;P&gt;I'm intimately familiar with this mechanism, see the link below for a trip down memory lane for those of you that have used Check Point for more than 15 years...&lt;/P&gt;
&lt;P&gt;&lt;A href="https://seclists.org/bugtraq/2001/Jan/282" target="_blank" rel="noopener"&gt;https&lt;span class="lia-unicode-emoji" title=":confused_face:"&gt;😕&lt;/span&gt;/seclists.org/bugtraq/2001/Jan/282&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2019 12:10:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Security-gateway-license-scheme/m-p/49710#M86716</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2019-04-03T12:10:10Z</dc:date>
    </item>
    <item>
      <title>Re: Security gateway license scheme</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Security-gateway-license-scheme/m-p/49712#M86717</link>
      <description>&lt;P&gt;Or &lt;A class="cp_link sc_ellipsis" style="max-width: 840px;" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk10200&amp;amp;partition=General&amp;amp;product=Security" target="_blank"&gt;sk10200: 'too many internal hosts' error in /var/log/messages on Security Gateway&lt;/A&gt; - &lt;SPAN class="cp_text" style="font-size: 13px; color: #666;"&gt;Last Updated:&lt;/SPAN&gt; &lt;SPAN class="cp_text"&gt;23-Jan-2018&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Apr 2019 12:14:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Security-gateway-license-scheme/m-p/49712#M86717</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2019-04-03T12:14:31Z</dc:date>
    </item>
  </channel>
</rss>

