<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: problem with access to the site in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/problem-with-access-to-the-site/m-p/214238#M35420</link>
    <description>&lt;P&gt;As part of SNI verification (App Control with or without HTTPS Inspection, and with HTTPS Inspection), we initiate a connection from the gateway to verify the SAN of the target site.&lt;BR /&gt;That part is expected behavior.&lt;/P&gt;</description>
    <pubDate>Tue, 14 May 2024 21:53:38 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2024-05-14T21:53:38Z</dc:date>
    <item>
      <title>problem with access to the site</title>
      <link>https://community.checkpoint.com/t5/General-Topics/problem-with-access-to-the-site/m-p/214133#M35394</link>
      <description>&lt;P&gt;Good afternoon&lt;/P&gt;&lt;P&gt;There is a problem with access to the site.&lt;BR /&gt;The site support said that there is no blocking of our external addresses.&lt;BR /&gt;We see duplicate logs: for some reason, in addition to user traffic, we see that there is traffic from the checkpoint itself to the site. That is, both users and checkpoint are accessing the resource.&lt;BR /&gt;&lt;BR /&gt;Previously, we saw that traffic was coming only from user networks. But now we see in the logs connections from both user networks and CheckPoint's external address.&lt;/P&gt;&lt;P&gt;Can you tell me if this is normal? Also in the traffic dumps we see TCP Retransmission.&lt;/P&gt;</description>
      <pubDate>Tue, 14 May 2024 09:14:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/problem-with-access-to-the-site/m-p/214133#M35394</guid>
      <dc:creator>Oliver_222</dc:creator>
      <dc:date>2024-05-14T09:14:31Z</dc:date>
    </item>
    <item>
      <title>Re: problem with access to the site</title>
      <link>https://community.checkpoint.com/t5/General-Topics/problem-with-access-to-the-site/m-p/214142#M35396</link>
      <description>&lt;P&gt;I think we are missing several key bits of information to be able to help, for example:&lt;/P&gt;
&lt;P&gt;Is HTTPS inspection used and which version/JHF is the gateway?&lt;/P&gt;
&lt;P&gt;Are you able to share details of the problematic site, is it isolated to this site?&lt;/P&gt;
&lt;P&gt;Is the traffic just NAT/d by the gateway or is it also acting as a proxy?&lt;/P&gt;</description>
      <pubDate>Tue, 14 May 2024 12:31:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/problem-with-access-to-the-site/m-p/214142#M35396</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2024-05-14T12:31:16Z</dc:date>
    </item>
    <item>
      <title>Re: problem with access to the site</title>
      <link>https://community.checkpoint.com/t5/General-Topics/problem-with-access-to-the-site/m-p/214152#M35397</link>
      <description>&lt;P&gt;Yes, HTTPS inspection is enabled. Earlier we saw logs about HTTPS inspection, but now we don't see them: we only see accept logs of users and the Security Gateway.&lt;BR /&gt;3000 Appliance R81.10 Take: 87&lt;/P&gt;&lt;P&gt;The site &lt;A href="https://jazz.sber.ru" target="_blank"&gt;https://jazz.sber.ru&lt;/A&gt; , it is designed for video calls.&lt;/P&gt;&lt;P&gt;We use the automatic hide NAT rule for the user network object.&lt;/P&gt;</description>
      <pubDate>Tue, 14 May 2024 12:47:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/problem-with-access-to-the-site/m-p/214152#M35397</guid>
      <dc:creator>Oliver_222</dc:creator>
      <dc:date>2024-05-14T12:47:42Z</dc:date>
    </item>
    <item>
      <title>Re: problem with access to the site</title>
      <link>https://community.checkpoint.com/t5/General-Topics/problem-with-access-to-the-site/m-p/214160#M35403</link>
      <description>&lt;P&gt;Some things to consider:&lt;/P&gt;
&lt;P&gt;- Check Trusted CA list is up to date&lt;/P&gt;
&lt;P&gt;- Is QUIC traffic handled in the environment&amp;nbsp;&lt;/P&gt;
&lt;P&gt;- Upgrading Jumbo take&lt;/P&gt;
&lt;P&gt;- Recent documented change in Chrome behavior&lt;/P&gt;</description>
      <pubDate>Tue, 14 May 2024 13:12:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/problem-with-access-to-the-site/m-p/214160#M35403</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2024-05-14T13:12:56Z</dc:date>
    </item>
    <item>
      <title>Re: problem with access to the site</title>
      <link>https://community.checkpoint.com/t5/General-Topics/problem-with-access-to-the-site/m-p/214238#M35420</link>
      <description>&lt;P&gt;As part of SNI verification (App Control with or without HTTPS Inspection, and with HTTPS Inspection), we initiate a connection from the gateway to verify the SAN of the target site.&lt;BR /&gt;That part is expected behavior.&lt;/P&gt;</description>
      <pubDate>Tue, 14 May 2024 21:53:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/problem-with-access-to-the-site/m-p/214238#M35420</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-05-14T21:53:38Z</dc:date>
    </item>
  </channel>
</rss>

