<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Zero Phishing Exceptions in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/49634#M1027</link>
    <description>&lt;P&gt;Hmmm, no, that didn’t suggest an exclusion.&lt;/P&gt;&lt;P&gt;So if a domain/IP address is entered in that box, the zero phishing browser plugin won’t scan it?&lt;/P&gt;&lt;P&gt;If so, rather than “Protected” should it not say “Excluded”?&lt;/P&gt;</description>
    <pubDate>Tue, 02 Apr 2019 22:46:53 GMT</pubDate>
    <dc:creator>Stuart_Green</dc:creator>
    <dc:date>2019-04-02T22:46:53Z</dc:date>
    <item>
      <title>Zero Phishing Exceptions</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/49595#M1025</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Is it possible to configure exceptions for Zero Phishing?&lt;/P&gt;&lt;P&gt;This scenario exists where a customer doesn't want the Zero Phishing browser plugin to prompt for internal websites - i.e. ones behind their firewall on internal servers.&lt;/P&gt;&lt;P&gt;Yes, I get that this introduces the scenario where they could be redirected to an external site masquerading as an internal site but asking the question anyway...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;TIA&lt;/P&gt;</description>
      <pubDate>Tue, 02 Apr 2019 15:24:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/49595#M1025</guid>
      <dc:creator>Stuart_Green</dc:creator>
      <dc:date>2019-04-02T15:24:13Z</dc:date>
    </item>
    <item>
      <title>Re: Zero Phishing Exceptions</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/49632#M1026</link>
      <description>&lt;P&gt;Do you have the relevant domain configured here?&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2019-04-02 at 3.23.24 PM.png" style="width: 521px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/612i5FEB71508F835098/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2019-04-02 at 3.23.24 PM.png" alt="Screen Shot 2019-04-02 at 3.23.24 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 02 Apr 2019 22:24:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/49632#M1026</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-04-02T22:24:22Z</dc:date>
    </item>
    <item>
      <title>Re: Zero Phishing Exceptions</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/49634#M1027</link>
      <description>&lt;P&gt;Hmmm, no, that didn’t suggest an exclusion.&lt;/P&gt;&lt;P&gt;So if a domain/IP address is entered in that box, the zero phishing browser plugin won’t scan it?&lt;/P&gt;&lt;P&gt;If so, rather than “Protected” should it not say “Excluded”?&lt;/P&gt;</description>
      <pubDate>Tue, 02 Apr 2019 22:46:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/49634#M1027</guid>
      <dc:creator>Stuart_Green</dc:creator>
      <dc:date>2019-04-02T22:46:53Z</dc:date>
    </item>
    <item>
      <title>Re: Zero Phishing Exceptions</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/49635#M1028</link>
      <description>I'm not 100% sure it's an exclusion, but it makes sense you'd want to configure this option anyway.&lt;BR /&gt;Specifically, it's to make sure users are NOT using their corporate credentials on an external site.&lt;BR /&gt;When credentials are entered on an internal site, the domains of which are configured here, a hash of the password is stored.&lt;BR /&gt;If that password is used on an external site, then the user is alerted.</description>
      <pubDate>Tue, 02 Apr 2019 23:46:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/49635#M1028</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-04-02T23:46:18Z</dc:date>
    </item>
    <item>
      <title>Re: Zero Phishing Exceptions</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/54335#M1179</link>
      <description>&lt;P&gt;Per the documentation for the Zero Phishing functionality:&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;Protected Domains &lt;/STRONG&gt;- Add domains for which Password Reuse Protection is enforced.&lt;BR /&gt;SandBlast Agent keeps a cryptographic secure hash of the passwords used in these domains&lt;BR /&gt;and compares them to passwords entered outside of the protected domains&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;So, this dialog box is definitely about corporate password reuse, and is not about exclusions.&lt;/P&gt;&lt;P&gt;The SBA TE blade does have an exclusion configuration option... by default it is set to "Inspect all domains and files", but there is a dialog box to add exclusions there. I am not sure if these exclusions would be used by the browser extension / Zero Phishing feature though...&amp;nbsp;&lt;/P&gt;&lt;P&gt;I did just have a Business Dev Director approach me and say that this was a problem for him as he was demoing websites for prospective customers and the "Scanning..." thing that Zero Phishing does on web forms "...did not look good...". &amp;lt;sigh&amp;gt;&lt;/P&gt;&lt;P&gt;Hopefully the exclusion setting will apply to the Zero Phishing feature, or I may need to add policy to disable this for a group of users / computers.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-left" image-alt="Untitled.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1326iF41E96A4463A10B4/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Untitled.png" alt="Untitled.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-left" image-alt="Capture3.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/1327i66509329202CFD2C/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Capture3.PNG" alt="Capture3.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 24 May 2019 16:58:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/54335#M1179</guid>
      <dc:creator>David_Levine</dc:creator>
      <dc:date>2019-05-24T16:58:36Z</dc:date>
    </item>
    <item>
      <title>Re: Zero Phishing Exceptions</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/73330#M1942</link>
      <description>&lt;P&gt;Has this been confirmed?&amp;nbsp; Does adding the domain in this exclusions list apply to the Zero Phishing/Password Reuse feature?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 24 Jan 2020 16:01:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/73330#M1942</guid>
      <dc:creator>Christopher_To</dc:creator>
      <dc:date>2020-01-24T16:01:01Z</dc:date>
    </item>
    <item>
      <title>Re: Zero Phishing Exceptions</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/73374#M1945</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;The answer is yes.&lt;/P&gt;
&lt;H3 id="SBA4BTroubleshooting-4A.Q:Howtoexcludeadomainfrom&amp;quot;ZeroPhishing&amp;quot;,&amp;quot;PasswordReuse&amp;quot;or&amp;quot;FileDownloadProtection&amp;quot;(TE/TEX)functionality?(forexcludingIPs,pleasealsorefertoquestion4B)"&gt;&lt;STRONG&gt;How to exclude a domain from&amp;nbsp;"Zero Phishing", "Password Reuse" or "File Download Protection" (TE/TEX) functionality:&lt;/STRONG&gt;&lt;/H3&gt;
&lt;P&gt;Suppose you want to exclude "gmail.com" and all its sub domains:&lt;BR /&gt;in the smart endpoint server, go to the policy tab, and edit the “Inspect all domains and files” option:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/4227iE440E213D0C5CB11/image-size/medium?v=v2&amp;amp;px=400" role="button" title="1.png" alt="1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/4228i0B57E2AA8DB3D24B/image-size/medium?v=v2&amp;amp;px=400" role="button" title="2.png" alt="2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &amp;nbsp;&amp;nbsp; Add “.gmail.com” as excluded domain.&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;Install policy, make sure your VM agent got the updated policy.&lt;/LI&gt;
&lt;LI&gt;From task manager – close all chrome\IE processes&lt;/LI&gt;
&lt;LI&gt;Start again chrome\IE browser&lt;/LI&gt;
&lt;/OL&gt;
&lt;UL&gt;
&lt;LI&gt;Verify that the correct “protected domain” was configured:&lt;/LI&gt;
&lt;LI&gt;Note that the domain has to be the same one that the login form is submitted to. Some customers might have the login form in an iframe from a different domain than the one in the address bar.&lt;/LI&gt;
&lt;LI&gt;When defining a domain for exclusion\protection, you should only consider the domain portion of the URL (shown in bold):&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="external-link" href="https://www.checkpoint.com:8080/path/to/page" rel="nofollow" target="_blank"&gt;https://&lt;STRONG&gt;www.checkpoint.com&lt;/STRONG&gt;:8080/path/to/page&lt;/A&gt;&lt;BR /&gt;A domain will be classified as excluded\protected, if any entry in the exclusion list is a suffix of it.&lt;BR /&gt;For example, if the exclusion list contains the entry&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;&lt;EM&gt;.checkpoint.com&lt;/EM&gt;,&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;then&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="external-link" href="http://www.checkpoint.com/" rel="nofollow" target="_blank"&gt;www.checkpoint.com&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;will be excluded.&lt;BR /&gt;The exclusion list may also contain a regular expressions.&lt;BR /&gt;Such regular expression must span the whole string.&lt;BR /&gt;For example:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;.*\.checkpoint\.co\..*&lt;BR /&gt;&lt;/EM&gt;will match:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="external-link" href="http://www.checkpoint.co.uk/" rel="nofollow" target="_blank"&gt;www.checkpoint.co.uk&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="external-link" href="http://www.checkpoint.co.il/" rel="nofollow" target="_blank"&gt;www.checkpoint.co.il&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; mail.checkpoint.co.uk&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; mail.checkpoint.co.il etc.&lt;BR /&gt;&lt;STRONG&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; The most common use is to exclude a domain and its sub domains,&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;example : in order to excluded&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;checkpoint.com&lt;/EM&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;and all its sub domains,&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; the user should insert:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;&lt;EM&gt;.checkpoint.com&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Make sure you login to the protected domain&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;&lt;U&gt;after&lt;/U&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;the policy on the client was&amp;nbsp; updated with the protected domains list&lt;BR /&gt;make sure the excluded domain is updated in the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;&lt;STRONG&gt;excluded_domains&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/EM&gt;entry in the registry.&lt;BR /&gt;HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome\3rdparty\extensions\&lt;STRONG&gt;&amp;lt;Extension ID&amp;gt;&lt;/STRONG&gt;\policy\&lt;BR /&gt;e.g.&lt;BR /&gt;
&lt;DIV id="tinyMceEditorTalya_Ariel_2" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;/LI&gt;
&lt;LI&gt;Make sure you have waited for 10 minutes after the policy was sent to the host, to verify the extension loaded the configuration properly.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Please note, 'Protected domains' defines the domains that will be protected by &lt;STRONG&gt;password reuse&lt;/STRONG&gt;.&lt;/P&gt;
&lt;P&gt;For more information please see our troubleshooting wiki page-&amp;nbsp;&lt;A href="https://wiki.checkpoint.com/confluence/pages/viewpage.action?spaceKey=PRODUCTINFO&amp;amp;title=SBA4B+Troubleshooting#SBA4BLabs-1272000687" target="_blank"&gt;https://wiki.checkpoint.com/confluence/pages/viewpage.action?spaceKey=PRODUCTINFO&amp;amp;title=SBA4B+Troubleshooting#SBA4BLabs-1272000687&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;Talya Ariel&lt;BR /&gt;Software Engineer&lt;/P&gt;</description>
      <pubDate>Sun, 26 Jan 2020 11:09:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/73374#M1945</guid>
      <dc:creator>Talya_Ariel</dc:creator>
      <dc:date>2020-01-26T11:09:30Z</dc:date>
    </item>
    <item>
      <title>Re: Zero Phishing Exceptions</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/73629#M1950</link>
      <description>&lt;P&gt;Hey Team,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Not to bump an old thread but can I confirm the exception will work properly for an IP as well?&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I see an IP range option in the "protected domains" area, but not the "inspect all sites" exception area. Will a regex matching the range I want to exclude work here?&lt;/P&gt;</description>
      <pubDate>Wed, 29 Jan 2020 03:28:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/73629#M1950</guid>
      <dc:creator>brian_hunter</dc:creator>
      <dc:date>2020-01-29T03:28:21Z</dc:date>
    </item>
    <item>
      <title>Re: Zero Phishing Exceptions</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/73730#M1963</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please see the answers to your questions in our SBA4B troubleshooting wiki page:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://wiki.checkpoint.com/confluence/pages/viewpage.action?title=SBA4B+Troubleshooting&amp;amp;spaceKey=PRODUCTINFO#SBA4BLabs--1339142783" target="_blank"&gt;https://wiki.checkpoint.com/confluence/pages/viewpage.action?title=SBA4B+Troubleshooting&amp;amp;spaceKey=PRODUCTINFO#SBA4BLabs--1339142783&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;under the tab 'FAQ- Zero Phishing and General', question #4.&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Talya Ariel&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;Software Engineer&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jan 2020 06:10:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/73730#M1963</guid>
      <dc:creator>Talya_Ariel</dc:creator>
      <dc:date>2020-01-30T06:10:18Z</dc:date>
    </item>
    <item>
      <title>Re: Zero Phishing Exceptions</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/73778#M1965</link>
      <description>&lt;P&gt;As the public does not have access to our internal wiki, I'll copy/paste the instructions here.&lt;/P&gt;
&lt;H3 id="SBA4BTroubleshooting-4A.Q:Howtoexcludeadomainfrom&amp;quot;ZeroPhishing&amp;quot;,&amp;quot;PasswordReuse&amp;quot;or&amp;quot;FileDownloadProtection&amp;quot;(TE/TEX)functionality?(forexcludingIPs,pleasealsorefertoquestion4B)"&gt;&lt;STRONG&gt;4A. Q: How to exclude a domain from&amp;nbsp;"Zero Phishing", "Password Reuse" or "File Download Protection" (TE/TEX) functionality?&lt;BR /&gt;(for excluding IPs, please also refer to question 4B)&lt;/STRONG&gt;&lt;/H3&gt;
&lt;P&gt;&lt;STRONG&gt;A:&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;Suppose you want to exclude "gmail.com" and all its sub domains:&lt;BR /&gt;in the smart endpoint server, go to the policy tab, and edit the “Inspect all domains and files” option:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image2017-10-25 17_27_26.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/4287i50E6ABEBA1FE891F/image-size/medium?v=v2&amp;amp;px=400" role="button" title="image2017-10-25 17_27_26.png" alt="image2017-10-25 17_27_26.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P class="Subtitle2"&gt;&amp;nbsp;&amp;nbsp; Add “.gmail.com” as excluded domain.&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;Install policy, make sure your VM agent got the updated policy.&lt;/LI&gt;
&lt;LI&gt;From task manager – close all chrome\IE processes&lt;/LI&gt;
&lt;LI&gt;Start again chrome\IE browser&lt;/LI&gt;
&lt;/OL&gt;
&lt;UL&gt;
&lt;LI&gt;Verify that the correct “protected domain” was configured:&lt;/LI&gt;
&lt;LI&gt;Note that the domain has to be the same one that the login form is submitted to. Some customers might have the login form in an iframe from a different domain than the one in the address bar.&lt;/LI&gt;
&lt;LI&gt;When defining a domain for exclusion\protection, you should only consider the domain portion of the URL (shown in bold):&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="external-link" href="https://www.checkpoint.com:8080/path/to/page" rel="nofollow" target="_blank"&gt;https://&lt;STRONG&gt;www.checkpoint.com&lt;/STRONG&gt;:8080/path/to/page&lt;/A&gt;&lt;BR /&gt;A domain will be classified as excluded\protected, if any entry in the exclusion list is a suffix of it.&lt;BR /&gt;For example, if the exclusion list contains the entry&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;&lt;EM&gt;.checkpoint.com&lt;/EM&gt;,&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;then&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="external-link" href="http://www.checkpoint.com/" rel="nofollow" target="_blank"&gt;www.checkpoint.com&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;will be excluded.&lt;BR /&gt;The exclusion list may also contain a regular expressions.&lt;BR /&gt;Such regular expression must span the whole string.&lt;BR /&gt;For example:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;.*\.checkpoint\.co\..*&lt;BR /&gt;&lt;/EM&gt;will match:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="external-link" href="http://www.checkpoint.co.uk/" rel="nofollow" target="_blank"&gt;www.checkpoint.co.uk&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="external-link" href="http://www.checkpoint.co.il/" rel="nofollow" target="_blank"&gt;www.checkpoint.co.il&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; mail.checkpoint.co.uk&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; mail.checkpoint.co.il etc.&lt;BR /&gt;&lt;STRONG&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; The most common use is to exclude a domain and its sub domains,&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;example : in order to excluded&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;checkpoint.com&lt;/EM&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;and all its sub domains,&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; the user should insert:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;&lt;EM&gt;.checkpoint.com&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Make sure you login to the protected domain&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;&lt;U&gt;after&lt;/U&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;the policy on the client was&amp;nbsp; updated with the protected domains list&lt;BR /&gt;make sure the excluded domain is updated in the&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;&lt;STRONG&gt;excluded_domains&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/EM&gt;entry in the registry.&lt;BR /&gt;HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Google\Chrome\3rdparty\extensions\&lt;STRONG&gt;&amp;lt;Extension ID&amp;gt;&lt;/STRONG&gt;\policy\&lt;BR /&gt;e.g.&lt;BR /&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;Make sure you have waited for 10 minutes after the policy was sent to the host, to verify the extension loaded the configuration properly.&lt;/LI&gt;
&lt;/UL&gt;
&lt;H3 id="SBA4BTroubleshooting-4B.Q:HowtoexcludeanIPfrom&amp;quot;ZeroPhishing&amp;quot;,&amp;quot;PasswordReuse&amp;quot;or&amp;quot;FileDownloadProtection&amp;quot;(TE/TEX)functionality?"&gt;&lt;STRONG&gt;4B. Q: How to exclude an IP&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;STRONG&gt;from&amp;nbsp;"Zero Phishing", "Password Reuse" or "File Download Protection" (TE/TEX) functionality?&lt;/STRONG&gt;&lt;/H3&gt;
&lt;P&gt;&lt;STRONG&gt;A:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/STRONG&gt;Exclusion rules for IPs are written in CIDR notation. You can follow the following examples:&lt;/P&gt;
&lt;DIV class="table-wrap"&gt;
&lt;TABLE class="wrapped confluenceTable tablesorter tablesorter-default" role="grid"&gt;
&lt;THEAD&gt;
&lt;TR class="tablesorter-headerRow" role="row"&gt;
&lt;TH class="confluenceTh tablesorter-header sortableHeader tablesorter-headerUnSorted" tabindex="0" role="columnheader" scope="col" data-column="0" aria-disabled="false" aria-sort="none" aria-label="rule: No sort applied, activate to apply an ascending sort"&gt;
&lt;DIV class="tablesorter-header-inner"&gt;rule&lt;/DIV&gt;
&lt;/TH&gt;
&lt;TH class="confluenceTh tablesorter-header sortableHeader tablesorter-headerUnSorted" tabindex="0" role="columnheader" scope="col" data-column="1" aria-disabled="false" aria-sort="none" aria-label="what will be excluded?: No sort applied, activate to apply an ascending sort"&gt;
&lt;DIV class="tablesorter-header-inner"&gt;what will be excluded?&lt;/DIV&gt;
&lt;/TH&gt;
&lt;/TR&gt;
&lt;/THEAD&gt;
&lt;TBODY aria-live="polite" aria-relevant="all"&gt;
&lt;TR role="row"&gt;
&lt;TD class="confluenceTd"&gt;192.168.10.12/32&lt;/TD&gt;
&lt;TD class="confluenceTd"&gt;exclude the IP 192.168.10.12&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR role="row"&gt;
&lt;TD class="confluenceTd"&gt;192.168.10.12/24&lt;/TD&gt;
&lt;TD class="confluenceTd"&gt;exclude the class C network 192.168.10.*&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR role="row"&gt;
&lt;TD class="confluenceTd"&gt;192.168.10.12/16&lt;/TD&gt;
&lt;TD class="confluenceTd"&gt;exclude the class B network 192.168.*&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR role="row"&gt;
&lt;TD colspan="1" class="confluenceTd"&gt;192.168.10.12/8&lt;/TD&gt;
&lt;TD colspan="1" class="confluenceTd"&gt;exclude the class A network 192.*&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;/DIV&gt;</description>
      <pubDate>Thu, 30 Jan 2020 15:36:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Zero-Phishing-Exceptions/m-p/73778#M1965</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-01-30T15:36:02Z</dc:date>
    </item>
  </channel>
</rss>

