<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Blocking Multiple domain using script on R81.10 in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Blocking-Multiple-domain-using-script-on-R81-10/m-p/194861#M32622</link>
    <description>&lt;P&gt;You might find it easier to upgrade to R81.20 and put all the domains in a &lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Content/Topics-SECMG/Network_Feed.htm" target="_self"&gt;Network Feed&lt;/A&gt;.&lt;BR /&gt;This will allow you to maintain this block list without having to manipulate objects in a group or pushing policy.&lt;/P&gt;
&lt;P&gt;Having said that, you can script this with something like the following two commands and some looping:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;mgmt_cli -s sid.txt add dns-domain name ".example.com" is-sub-domain false&lt;/LI&gt;
&lt;LI&gt;mgmt_cli -s sid.txt set group name "MyGroup" members.add ".example.com"&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;A &lt;A href="https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/publish~v1.9%20" target="_self"&gt;publish&lt;/A&gt; action every 100 or so iterations is recommended.&lt;/P&gt;</description>
    <pubDate>Wed, 11 Oct 2023 17:09:59 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2023-10-11T17:09:59Z</dc:date>
    <item>
      <title>Blocking Multiple domain using script on R81.10</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Blocking-Multiple-domain-using-script-on-R81-10/m-p/194855#M32620</link>
      <description>&lt;P&gt;Hi Checkmates,&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Is there a method to efficiently block a large number of domains, such as 1000 or more, using a script in the R81.10 environment? Currently, within our network, we have access policies to block domains and we maintain a network object group where we typically list domain FQDN which we wanted to block. However, we recently received a request to block over 1000 domains, and we're looking for a way to add them in bulk to our existing network object group. Is there a script or method available for this scenario?&lt;BR /&gt;&lt;BR /&gt;#6200 #R81.10&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 11 Oct 2023 16:00:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Blocking-Multiple-domain-using-script-on-R81-10/m-p/194855#M32620</guid>
      <dc:creator>ArsathParves1</dc:creator>
      <dc:date>2023-10-11T16:00:00Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking Multiple domain using script on R81.10</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Blocking-Multiple-domain-using-script-on-R81-10/m-p/194861#M32622</link>
      <description>&lt;P&gt;You might find it easier to upgrade to R81.20 and put all the domains in a &lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Content/Topics-SECMG/Network_Feed.htm" target="_self"&gt;Network Feed&lt;/A&gt;.&lt;BR /&gt;This will allow you to maintain this block list without having to manipulate objects in a group or pushing policy.&lt;/P&gt;
&lt;P&gt;Having said that, you can script this with something like the following two commands and some looping:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;mgmt_cli -s sid.txt add dns-domain name ".example.com" is-sub-domain false&lt;/LI&gt;
&lt;LI&gt;mgmt_cli -s sid.txt set group name "MyGroup" members.add ".example.com"&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;A &lt;A href="https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/publish~v1.9%20" target="_self"&gt;publish&lt;/A&gt; action every 100 or so iterations is recommended.&lt;/P&gt;</description>
      <pubDate>Wed, 11 Oct 2023 17:09:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Blocking-Multiple-domain-using-script-on-R81-10/m-p/194861#M32622</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-10-11T17:09:59Z</dc:date>
    </item>
  </channel>
</rss>

