<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: DNS Implied rule in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/DNS-Implied-rule/m-p/188514#M31600</link>
    <description>&lt;P&gt;I think what Val gave you sums it all up pretty well. I would certainly watch DNS hacking presentation by Ralph, it was fantastic.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Thu, 03 Aug 2023 01:36:34 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-08-03T01:36:34Z</dc:date>
    <item>
      <title>DNS Implied rule</title>
      <link>https://community.checkpoint.com/t5/General-Topics/DNS-Implied-rule/m-p/188030#M31513</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I wanted to ask about the DNS Implied rule in the CP Gateway (UDP/53).&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;U&gt;Since in my organization, we are using both the implied rule and manual DNS rule (where needed) with TCP/53 port I would like to know the follows: &lt;/U&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Is there a way for a hacker, from inside or the outside, to use the DNS implied rule of the CP to perform any kind of an attack, which can happened under are noses?&lt;/LI&gt;&lt;LI&gt;Since Implied rules are not changeable, what is the best practice to work with the specific DNS Implied rule, to achieve – maximum security?&lt;/LI&gt;&lt;LI&gt;If I would like to Block the use of the DNS Implied rule of the Gateway, from one subnet to another or to Any, how should I do it the best way?&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 30 Jul 2023 10:21:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/DNS-Implied-rule/m-p/188030#M31513</guid>
      <dc:creator>EitanNeuman</dc:creator>
      <dc:date>2023-07-30T10:21:35Z</dc:date>
    </item>
    <item>
      <title>Re: DNS Implied rule</title>
      <link>https://community.checkpoint.com/t5/General-Topics/DNS-Implied-rule/m-p/188466#M31593</link>
      <description>&lt;P&gt;Let's start with the main question. Can hackers use DNS? the answer is yes. We just had a TechTalk about DNS security, you can watch it here:&amp;nbsp;&lt;A href="https://community.checkpoint.com/t5/General-Topics/Hacking-DNS-TechTalk-Video-Slides-and-Q-amp-A/m-p/187736/highlight/true#M31438" target="_blank"&gt;https://community.checkpoint.com/t5/General-Topics/Hacking-DNS-TechTalk-Video-Slides-and-Q-amp-A/m-p/187736/highlight/true#M31438&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Now, you can also adjust and log implied rules. DNS is NOT enabled through the implied rules by default.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2023-08-02 at 16.38.37.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21957i8336492A179FB5EC/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2023-08-02 at 16.38.37.png" alt="Screenshot 2023-08-02 at 16.38.37.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;You can also create explicit rules to control your DNS traffic. Lastly, with Threat prevention, you can put additional protections over DNS traffic, regardless of how you configure your rules, implied or explicit.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 02 Aug 2023 14:42:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/DNS-Implied-rule/m-p/188466#M31593</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-08-02T14:42:44Z</dc:date>
    </item>
    <item>
      <title>Re: DNS Implied rule</title>
      <link>https://community.checkpoint.com/t5/General-Topics/DNS-Implied-rule/m-p/188514#M31600</link>
      <description>&lt;P&gt;I think what Val gave you sums it all up pretty well. I would certainly watch DNS hacking presentation by Ralph, it was fantastic.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 03 Aug 2023 01:36:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/DNS-Implied-rule/m-p/188514#M31600</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-08-03T01:36:34Z</dc:date>
    </item>
  </channel>
</rss>

