<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: DLP logs with gateway has the source in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/DLP-logs-with-gateway-has-the-source/m-p/12266#M1952</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do you have X-Forwarded-For enabled?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="" style="color: #333333; background-color: inherit; font-weight: 300; text-decoration: none; margin: 0.5cm 0cm 3pt; padding: 15px 0pt 0pt;"&gt;To use X-Forwarded-For HTTP header:&lt;/P&gt;&lt;OL class="" style="color: #333333; margin-top: 6pt; margin-bottom: 0pt;"&gt;&lt;LI class="" style="color: #000000; background-color: inherit; font-weight: normal; text-decoration: none; text-indent: 0cm; margin: 6pt 0pt 0pt; padding: 0pt;"&gt;Configure your proxy server to use X-Forwarded-For HTTP Header.&lt;/LI&gt;&lt;LI class="" style="color: #000000; background-color: inherit; font-weight: normal; text-decoration: none; text-indent: 0cm; margin: 6pt 0pt 0pt; padding: 0pt;"&gt;In SmartDashboard, on the I&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;dentity Awareness&lt;/STRONG&gt;&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;page of each gateway object, select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;Detect users located behind HTTP proxy using X-Forward-For header&lt;/STRONG&gt;&lt;/STRONG&gt;.&lt;/LI&gt;&lt;LI class="" style="color: #000000; background-color: inherit; font-weight: normal; text-decoration: none; text-indent: 0cm; margin: 6pt 0pt 0pt; padding: 0pt;"&gt;To configure the gateway to hide the X Forwarded-For header to not show internal IP addresses in requests to the internet, select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;Hide X Forward-For header in outgoing traffic&lt;/STRONG&gt;&lt;/STRONG&gt;.&lt;/LI&gt;&lt;LI class="" style="color: #000000; background-color: inherit; font-weight: normal; text-decoration: none; text-indent: 0cm; margin: 6pt 0pt 0pt; padding: 0pt;"&gt;Install the Policy.&lt;/LI&gt;&lt;/OL&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 25 Jul 2018 10:56:53 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2018-07-25T10:56:53Z</dc:date>
    <item>
      <title>DLP logs with gateway has the source</title>
      <link>https://community.checkpoint.com/t5/General-Topics/DLP-logs-with-gateway-has-the-source/m-p/12263#M1949</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-family: Arial; font-size: small;"&gt;All the events which are sent to the DLP server is having client IP as the checkpoint IP only.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: Arial; font-size: small;"&gt;We have integrated DR Checkpoint firewall with DLP. Traffic is passing to the DLP server from the Firewall. Yet all the events that are collected at the DLP server is having the Firewall IP as its client IP. Due to this we are unable to get the actual client IP for those events.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: Arial; font-size: small;"&gt;Kindly confirm whether any settings can be changed from the checkpoint firewall by which the DLP events will show the actual Client machines IP.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Jul 2018 19:20:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/DLP-logs-with-gateway-has-the-source/m-p/12263#M1949</guid>
      <dc:creator>Vengatesh_SR</dc:creator>
      <dc:date>2018-07-23T19:20:49Z</dc:date>
    </item>
    <item>
      <title>Re: DLP logs with gateway has the source</title>
      <link>https://community.checkpoint.com/t5/General-Topics/DLP-logs-with-gateway-has-the-source/m-p/12264#M1950</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What DLP server?&lt;/P&gt;&lt;P&gt;Is it integrated with ICAP?&lt;/P&gt;&lt;P&gt;What version of Check Point gateway code?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Jul 2018 21:42:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/DLP-logs-with-gateway-has-the-source/m-p/12264#M1950</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-07-23T21:42:46Z</dc:date>
    </item>
    <item>
      <title>Re: DLP logs with gateway has the source</title>
      <link>https://community.checkpoint.com/t5/General-Topics/DLP-logs-with-gateway-has-the-source/m-p/12265#M1951</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-family: Arial; font-size: medium;"&gt;What DLP server we are using? &lt;/SPAN&gt;&lt;STRONG style="color: #0000ff; font-size: medium; font-family: Arial;"&gt;Symantec DLP server is used&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: Arial; font-size: medium;"&gt;Is it integrated with ICAP? &lt;/SPAN&gt;&lt;STRONG style="color: #0000ff; font-size: medium; font-family: Arial;"&gt;Yes the ICAP integration is done in the checkpoint firewall&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: Arial; font-size: medium;"&gt;What version of Check Point gateway code? &lt;/SPAN&gt;&lt;STRONG style="color: #0000ff; font-size: medium; font-family: Arial;"&gt;R77.30 Hot Fix Take 302&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Jul 2018 07:39:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/DLP-logs-with-gateway-has-the-source/m-p/12265#M1951</guid>
      <dc:creator>Vengatesh_SR</dc:creator>
      <dc:date>2018-07-25T07:39:53Z</dc:date>
    </item>
    <item>
      <title>Re: DLP logs with gateway has the source</title>
      <link>https://community.checkpoint.com/t5/General-Topics/DLP-logs-with-gateway-has-the-source/m-p/12266#M1952</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do you have X-Forwarded-For enabled?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="" style="color: #333333; background-color: inherit; font-weight: 300; text-decoration: none; margin: 0.5cm 0cm 3pt; padding: 15px 0pt 0pt;"&gt;To use X-Forwarded-For HTTP header:&lt;/P&gt;&lt;OL class="" style="color: #333333; margin-top: 6pt; margin-bottom: 0pt;"&gt;&lt;LI class="" style="color: #000000; background-color: inherit; font-weight: normal; text-decoration: none; text-indent: 0cm; margin: 6pt 0pt 0pt; padding: 0pt;"&gt;Configure your proxy server to use X-Forwarded-For HTTP Header.&lt;/LI&gt;&lt;LI class="" style="color: #000000; background-color: inherit; font-weight: normal; text-decoration: none; text-indent: 0cm; margin: 6pt 0pt 0pt; padding: 0pt;"&gt;In SmartDashboard, on the I&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;dentity Awareness&lt;/STRONG&gt;&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;page of each gateway object, select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;Detect users located behind HTTP proxy using X-Forward-For header&lt;/STRONG&gt;&lt;/STRONG&gt;.&lt;/LI&gt;&lt;LI class="" style="color: #000000; background-color: inherit; font-weight: normal; text-decoration: none; text-indent: 0cm; margin: 6pt 0pt 0pt; padding: 0pt;"&gt;To configure the gateway to hide the X Forwarded-For header to not show internal IP addresses in requests to the internet, select&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;&lt;STRONG class="" style="color: inherit; background-color: inherit; font-weight: bold; padding: 0pt;"&gt;Hide X Forward-For header in outgoing traffic&lt;/STRONG&gt;&lt;/STRONG&gt;.&lt;/LI&gt;&lt;LI class="" style="color: #000000; background-color: inherit; font-weight: normal; text-decoration: none; text-indent: 0cm; margin: 6pt 0pt 0pt; padding: 0pt;"&gt;Install the Policy.&lt;/LI&gt;&lt;/OL&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 25 Jul 2018 10:56:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/DLP-logs-with-gateway-has-the-source/m-p/12266#M1952</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-07-25T10:56:53Z</dc:date>
    </item>
  </channel>
</rss>

