<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Time Limits Not Killing Active Connections in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Time-Limits-Not-Killing-Active-Connections/m-p/78992#M16072</link>
    <description>&lt;P&gt;Agree with Phoneboy here that you will need to use a script, time ranges are only checked as a rule matching condition at connection start time, and never checked again once the connection is initially allowed.&lt;/P&gt;</description>
    <pubDate>Fri, 20 Mar 2020 14:49:19 GMT</pubDate>
    <dc:creator>Timothy_Hall</dc:creator>
    <dc:date>2020-03-20T14:49:19Z</dc:date>
    <item>
      <title>Time Limits Not Killing Active Connections</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Time-Limits-Not-Killing-Active-Connections/m-p/78564#M15994</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I'm running R80.30 and I have a rule setup to drop any traffic from a specific IP range to the Internet, every day from Midnight until 0600.&lt;/P&gt;&lt;P&gt;The rule is working and does not allow any new connections during that time, but it doesn't drop active connections. In SmartView Tracker, I can see a few connections still open from that IP range, and users are still online.&amp;nbsp; I have to use the Block Intruder feature and drop the connection for 5 minutes. New connections are not allowed at that point until 0600.&lt;/P&gt;&lt;P&gt;Is there a way for the rule to drop active connections?&amp;nbsp; Or will I have to run some kind of script to accomplish this?&lt;/P&gt;</description>
      <pubDate>Tue, 17 Mar 2020 14:48:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Time-Limits-Not-Killing-Active-Connections/m-p/78564#M15994</guid>
      <dc:creator>Lockout888</dc:creator>
      <dc:date>2020-03-17T14:48:36Z</dc:date>
    </item>
    <item>
      <title>Re: Time Limits Not Killing Active Connections</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Time-Limits-Not-Killing-Active-Connections/m-p/78602#M16003</link>
      <description>You'll have to run some sort of script to do it.&lt;BR /&gt;It would probably be a fairly simple crontab using fw samp or similar.</description>
      <pubDate>Tue, 17 Mar 2020 21:03:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Time-Limits-Not-Killing-Active-Connections/m-p/78602#M16003</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-03-17T21:03:13Z</dc:date>
    </item>
    <item>
      <title>Re: Time Limits Not Killing Active Connections</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Time-Limits-Not-Killing-Active-Connections/m-p/78992#M16072</link>
      <description>&lt;P&gt;Agree with Phoneboy here that you will need to use a script, time ranges are only checked as a rule matching condition at connection start time, and never checked again once the connection is initially allowed.&lt;/P&gt;</description>
      <pubDate>Fri, 20 Mar 2020 14:49:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Time-Limits-Not-Killing-Active-Connections/m-p/78992#M16072</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2020-03-20T14:49:19Z</dc:date>
    </item>
    <item>
      <title>Re: Time Limits Not Killing Active Connections</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Time-Limits-Not-Killing-Active-Connections/m-p/96499#M18996</link>
      <description>&lt;P&gt;Thanks &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt; &amp;amp; &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/597"&gt;@Timothy_Hall&lt;/a&gt;.&lt;/P&gt;&lt;P&gt;Would this work?&lt;/P&gt;&lt;P&gt;Scheduled Job on GAIA web management on Gateway.&amp;nbsp; Command to run: fw sam -t 300 -J subsrc &amp;lt;IP&amp;gt; &amp;lt;Netmask&amp;gt;&lt;/P&gt;</description>
      <pubDate>Thu, 10 Sep 2020 16:09:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Time-Limits-Not-Killing-Active-Connections/m-p/96499#M18996</guid>
      <dc:creator>Lockout888</dc:creator>
      <dc:date>2020-09-10T16:09:17Z</dc:date>
    </item>
    <item>
      <title>Re: Time Limits Not Killing Active Connections</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Time-Limits-Not-Killing-Active-Connections/m-p/96504#M18998</link>
      <description>&lt;P&gt;Did some testing and it seems to work with this:&lt;BR /&gt;&lt;BR /&gt;Scheduled Job on Gateway GAIA Portal. Command to run: source /etc/profile.d/CP.sh ; fw sam -t 300 -J subsrc &amp;lt;IP&amp;gt; &amp;lt;Netmask&amp;gt;&lt;/P&gt;</description>
      <pubDate>Thu, 10 Sep 2020 16:29:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Time-Limits-Not-Killing-Active-Connections/m-p/96504#M18998</guid>
      <dc:creator>Lockout888</dc:creator>
      <dc:date>2020-09-10T16:29:51Z</dc:date>
    </item>
  </channel>
</rss>

