<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Application control question - help in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Application-control-question-help/m-p/99284#M19337</link>
    <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;I have a question around application control if it will help me solve an issue.&lt;/P&gt;&lt;P&gt;We use Salesforce in the cloud which is access by some servers, we find we have to keep changing the normal firewall rulebase because it uses Akamai content delivery network with ever changing ip addresses.&lt;/P&gt;&lt;P&gt;My question is, could we use application control to solve this issue?&lt;/P&gt;&lt;P&gt;what would the normal firewall security policy look like for this?&lt;/P&gt;&lt;P&gt;would I allow port 80/443 to anywhere, then create an application policy that denies these servers to all apps except sales force, then create a any any app rule after that?&lt;/P&gt;&lt;P&gt;would this work?&lt;/P&gt;&lt;P&gt;cheers&lt;/P&gt;</description>
    <pubDate>Fri, 16 Oct 2020 09:39:03 GMT</pubDate>
    <dc:creator>carl_t</dc:creator>
    <dc:date>2020-10-16T09:39:03Z</dc:date>
    <item>
      <title>Application control question - help</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Application-control-question-help/m-p/99284#M19337</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;I have a question around application control if it will help me solve an issue.&lt;/P&gt;&lt;P&gt;We use Salesforce in the cloud which is access by some servers, we find we have to keep changing the normal firewall rulebase because it uses Akamai content delivery network with ever changing ip addresses.&lt;/P&gt;&lt;P&gt;My question is, could we use application control to solve this issue?&lt;/P&gt;&lt;P&gt;what would the normal firewall security policy look like for this?&lt;/P&gt;&lt;P&gt;would I allow port 80/443 to anywhere, then create an application policy that denies these servers to all apps except sales force, then create a any any app rule after that?&lt;/P&gt;&lt;P&gt;would this work?&lt;/P&gt;&lt;P&gt;cheers&lt;/P&gt;</description>
      <pubDate>Fri, 16 Oct 2020 09:39:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Application-control-question-help/m-p/99284#M19337</guid>
      <dc:creator>carl_t</dc:creator>
      <dc:date>2020-10-16T09:39:03Z</dc:date>
    </item>
    <item>
      <title>Re: Application control question - help</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Application-control-question-help/m-p/99287#M19338</link>
      <description>&lt;P&gt;You could use a &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk90401&amp;amp;partition=Advanced&amp;amp;product=Security" target="_self"&gt;Domain Object&lt;/A&gt; to achieve tis.&lt;/P&gt;</description>
      <pubDate>Fri, 16 Oct 2020 09:53:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Application-control-question-help/m-p/99287#M19338</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2020-10-16T09:53:57Z</dc:date>
    </item>
    <item>
      <title>Re: Application control question - help</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Application-control-question-help/m-p/99293#M19339</link>
      <description>&lt;P&gt;Hi, I believe these aren't recommended, we have used before and it caused issues with the dns lookups, also the dns lookups need to come from an authoritative dns servver&lt;/P&gt;</description>
      <pubDate>Fri, 16 Oct 2020 10:25:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Application-control-question-help/m-p/99293#M19339</guid>
      <dc:creator>carl_t</dc:creator>
      <dc:date>2020-10-16T10:25:10Z</dc:date>
    </item>
    <item>
      <title>Re: Application control question - help</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Application-control-question-help/m-p/99297#M19341</link>
      <description>&lt;P&gt;Prior to version R80.10, Domain Objects were most definitely not recommended and could easily cause the issues you mentioned.&amp;nbsp; However in R80.10 and later the implementation of Domain Objects was significantly revamped, and they are much less likely to cause issues now.&amp;nbsp; See the SK mentioned earlier in this thread for more info about the changes.&lt;/P&gt;</description>
      <pubDate>Fri, 16 Oct 2020 11:23:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Application-control-question-help/m-p/99297#M19341</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2020-10-16T11:23:13Z</dc:date>
    </item>
    <item>
      <title>Re: Application control question - help</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Application-control-question-help/m-p/99479#M19373</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/27524"&gt;@carl_t&lt;/a&gt;&amp;nbsp;, both&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/597"&gt;@Timothy_Hall&lt;/a&gt;&amp;nbsp;&amp;amp;&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21294"&gt;@G_W_Albrecht&lt;/a&gt;&amp;nbsp;are right, you need to use FQDN domain object. This option is available in R80.x versions.&lt;BR /&gt;&lt;BR /&gt;More info here:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk120633" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk120633&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 19 Oct 2020 10:05:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Application-control-question-help/m-p/99479#M19373</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2020-10-19T10:05:03Z</dc:date>
    </item>
  </channel>
</rss>

