<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Bypassing Domain or IP from CheckPoint Firewall in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/Bypassing-Domain-or-IP-from-CheckPoint-Firewall/m-p/128983#M4696</link>
    <description>&lt;P&gt;You really haven't given us a lot to go on.&lt;BR /&gt;Let's start with version/JHF and the output of enabled_blades on the gateway.&lt;BR /&gt;That said,&amp;nbsp;I suspect the simplest way to eliminate most inspection on the relevant flow would be something like:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk156672" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk156672&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Note you would still need a rule in your Access Policy to permit the relevant traffic.&lt;/P&gt;</description>
    <pubDate>Wed, 08 Sep 2021 23:28:19 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2021-09-08T23:28:19Z</dc:date>
    <item>
      <title>Bypassing Domain or IP from CheckPoint Firewall</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Bypassing-Domain-or-IP-from-CheckPoint-Firewall/m-p/128961#M4695</link>
      <description>&lt;P&gt;Hello All,&lt;/P&gt;&lt;P&gt;CheckPoint Firewall is holding onto the network packet a too long and causing slowness issues with another 3rd party cloud proxy service that has a client installed on the system as well.&amp;nbsp; The slowness 'goes away' with the 3rd party client disabled or when we disable the CheckPoint Firewall.&amp;nbsp; Worked with support some time ago on this and with traces they can see the holding onto the packets.&amp;nbsp; I'm wondering if there is a way to bypass a Domain or IP address from being inspected by the CheckPoint Firewall.&amp;nbsp; Would appreciate your response.&amp;nbsp; Thank you!&lt;/P&gt;</description>
      <pubDate>Wed, 08 Sep 2021 15:23:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Bypassing-Domain-or-IP-from-CheckPoint-Firewall/m-p/128961#M4695</guid>
      <dc:creator>bdidonato</dc:creator>
      <dc:date>2021-09-08T15:23:43Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Domain or IP from CheckPoint Firewall</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Bypassing-Domain-or-IP-from-CheckPoint-Firewall/m-p/128983#M4696</link>
      <description>&lt;P&gt;You really haven't given us a lot to go on.&lt;BR /&gt;Let's start with version/JHF and the output of enabled_blades on the gateway.&lt;BR /&gt;That said,&amp;nbsp;I suspect the simplest way to eliminate most inspection on the relevant flow would be something like:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk156672" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk156672&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Note you would still need a rule in your Access Policy to permit the relevant traffic.&lt;/P&gt;</description>
      <pubDate>Wed, 08 Sep 2021 23:28:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Bypassing-Domain-or-IP-from-CheckPoint-Firewall/m-p/128983#M4696</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-09-08T23:28:19Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Domain or IP from CheckPoint Firewall</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Bypassing-Domain-or-IP-from-CheckPoint-Firewall/m-p/128984#M4697</link>
      <description>&lt;P&gt;Agree with&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;, thats a good sk for what you are trying to do. You can also check below one I pasted, but its more for exempting connections from securexl, so worth checking as well.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk104468" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk104468&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 09 Sep 2021 00:28:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Bypassing-Domain-or-IP-from-CheckPoint-Firewall/m-p/128984#M4697</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-09-09T00:28:54Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Domain or IP from CheckPoint Firewall</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Bypassing-Domain-or-IP-from-CheckPoint-Firewall/m-p/129046#M4699</link>
      <description>&lt;P&gt;Thank you for your reply.&amp;nbsp; We are running Harmony &lt;STRONG&gt;EndPoint&lt;/STRONG&gt; (formerly EPMaaS), which is a managed service.&amp;nbsp; It is running R81.&amp;nbsp; This is the host-based firewall component with Endpoint Security (SandBlast).&amp;nbsp; &amp;nbsp;Is Secure Xl able to be configured on that system?&lt;/P&gt;</description>
      <pubDate>Thu, 09 Sep 2021 14:23:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Bypassing-Domain-or-IP-from-CheckPoint-Firewall/m-p/129046#M4699</guid>
      <dc:creator>bdidonato</dc:creator>
      <dc:date>2021-09-09T14:23:58Z</dc:date>
    </item>
    <item>
      <title>Re: Bypassing Domain or IP from CheckPoint Firewall</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Bypassing-Domain-or-IP-from-CheckPoint-Firewall/m-p/129076#M4701</link>
      <description>&lt;P&gt;I realize you posted this in the Endpoint group but mentioning that in the description along with the version of client in question would have been a good clarification.&lt;/P&gt;
&lt;P&gt;In any case, the Endpoint firewall is a totally different animal.&lt;BR /&gt;If it’s a latency issue, I recommend re-engaging with the TAC as I don’t believe we have a “fastaccel” option on the Endpoint firewall, nor some way to completely bypass inspection.&lt;/P&gt;</description>
      <pubDate>Thu, 09 Sep 2021 21:10:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Bypassing-Domain-or-IP-from-CheckPoint-Firewall/m-p/129076#M4701</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-09-09T21:10:00Z</dc:date>
    </item>
  </channel>
</rss>

