<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CRL Traffic Not Appearing in the Logs in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/CRL-Traffic-Not-Appearing-in-the-Logs/m-p/246012#M41107</link>
    <description>&lt;P&gt;Do you see anything on port 18264? That should be relevant to CRL.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Wed, 09 Apr 2025 00:08:42 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2025-04-09T00:08:42Z</dc:date>
    <item>
      <title>CRL Traffic Not Appearing in the Logs</title>
      <link>https://community.checkpoint.com/t5/General-Topics/CRL-Traffic-Not-Appearing-in-the-Logs/m-p/246000#M41099</link>
      <description>&lt;P&gt;Recently one of the 3rd parties we connect to moved their services to AWS and as a result we identified an issue connecting to their site.&amp;nbsp; We checked the logs and could see the allowed https traffic going to AWS, however we were unable to see any other dropped traffic to AWS.&amp;nbsp; From further investigation we were able to identify that the traffic to connect for the CRL check on port 80 could be seen from a packet capture taken from the firewall, however this was was not showing in the logs despite no rules to allow access e.g., we were expecting to see this as dropped in the logs.&amp;nbsp; After updating the policy to allow this traffic it is now showing in the logs as allowed.&lt;BR /&gt;&lt;BR /&gt;We are currently running R81.10 on a VSX platform.&lt;/P&gt;&lt;P&gt;Has anyone else come across this situation whereby crl traffic is not showing as being dropped in the firewall logs but does appear in a packet capture?&lt;/P&gt;</description>
      <pubDate>Tue, 08 Apr 2025 17:59:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/CRL-Traffic-Not-Appearing-in-the-Logs/m-p/246000#M41099</guid>
      <dc:creator>peter7</dc:creator>
      <dc:date>2025-04-08T17:59:40Z</dc:date>
    </item>
    <item>
      <title>Re: CRL Traffic Not Appearing in the Logs</title>
      <link>https://community.checkpoint.com/t5/General-Topics/CRL-Traffic-Not-Appearing-in-the-Logs/m-p/246012#M41107</link>
      <description>&lt;P&gt;Do you see anything on port 18264? That should be relevant to CRL.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2025 00:08:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/CRL-Traffic-Not-Appearing-in-the-Logs/m-p/246012#M41107</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-09T00:08:42Z</dc:date>
    </item>
    <item>
      <title>Re: CRL Traffic Not Appearing in the Logs</title>
      <link>https://community.checkpoint.com/t5/General-Topics/CRL-Traffic-Not-Appearing-in-the-Logs/m-p/246058#M41114</link>
      <description>&lt;P&gt;I assume the CRL traffic would normally be permitted through implied rules which don’t log by default.&lt;BR /&gt;Why it’s not logging when it drops is a separate question.&lt;/P&gt;</description>
      <pubDate>Wed, 09 Apr 2025 13:16:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/CRL-Traffic-Not-Appearing-in-the-Logs/m-p/246058#M41114</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-04-09T13:16:37Z</dc:date>
    </item>
    <item>
      <title>Re: CRL Traffic Not Appearing in the Logs</title>
      <link>https://community.checkpoint.com/t5/General-Topics/CRL-Traffic-Not-Appearing-in-the-Logs/m-p/246449#M41176</link>
      <description>&lt;P&gt;CRL check is not on port 80 also CRL check is not 'needed / required' for 3rd party VPN's. Most of the time there are PSK based.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 14 Apr 2025 19:27:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/CRL-Traffic-Not-Appearing-in-the-Logs/m-p/246449#M41176</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2025-04-14T19:27:57Z</dc:date>
    </item>
  </channel>
</rss>

