<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Management Access - Time Limit in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248907#M12647</link>
    <description>&lt;P&gt;Try to set:&lt;/P&gt;
&lt;P&gt;&lt;CODE&gt;set fw policy advanced-settings log-implied-rules true&lt;/CODE&gt;&lt;/P&gt;
&lt;P&gt;Should show the used implied rule in logs. Implied Rules on SMB include:&lt;/P&gt;
&lt;TABLE id="Unique_ID_Implied_RulesTable" class="footnote" border="1" cellspacing="2" cellpadding="4"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD&gt;Accept Web and SSH connections for Gateway's administration (Small Office Appliance)&lt;/TD&gt;
&lt;TD&gt;Accepts Web and SSH connections to the Quantum Spark / SMB appliances.&lt;/TD&gt;
&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;Accept incoming traffic to DHCP and DNS services of gateways (Small Office Appliance)&lt;/TD&gt;
&lt;TD&gt;Accepts the IPv4 DHCP server, DHCP relay, and DNS proxy connections to the Quantum Spark / SMB appliances.&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&lt;CODE&gt;&lt;/CODE&gt;(sk179346)&lt;/P&gt;
&lt;P&gt;Implied Rules should be disabled by Strict Mode, so your rule should work as expected !&lt;/P&gt;</description>
    <pubDate>Wed, 14 May 2025 07:36:49 GMT</pubDate>
    <dc:creator>G_W_Albrecht</dc:creator>
    <dc:date>2025-05-14T07:36:49Z</dc:date>
    <item>
      <title>Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248545#M12606</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i have a Spark 1500 , and would like to limit access to Management GUI/SSH &amp;nbsp;to working hours only.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I tried an ACE with any &amp;gt; Internal IP of GW &amp;gt; Any &amp;gt; Block &amp;gt; 5pm to 8am&lt;/P&gt;&lt;P&gt;But its not working. Any suggestion? I guess Management access is on another level/Blade ?&lt;/P&gt;</description>
      <pubDate>Sat, 10 May 2025 07:12:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248545#M12606</guid>
      <dc:creator>smith-it</dc:creator>
      <dc:date>2025-05-10T07:12:29Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248700#M12620</link>
      <description>&lt;P&gt;Is your Access Policy set to “strict”?&lt;BR /&gt;This is done via Access Policy &amp;gt; Firewall &amp;gt; Blade Control.&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 17:03:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248700#M12620</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-05-12T17:03:16Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248712#M12624</link>
      <description>&lt;P&gt;What do you see in the policy as to why its allowed? I thought it could be done from below (screenshot attached), but guess not, needs a policy.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 19:04:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248712#M12624</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-05-12T19:04:27Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248718#M12626</link>
      <description>&lt;P&gt;It is set to Standard&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 20:13:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248718#M12626</guid>
      <dc:creator>smith-it</dc:creator>
      <dc:date>2025-05-12T20:13:58Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248719#M12627</link>
      <description>&lt;P&gt;Well, the Screeshot only defines the Management Access itself, but there is no option of limiting to a certain time. Access Policy Control ist Set to Standard. I attached the Policy i tried. (I also tried "Allow https to THIS_GATEWAY at workinghours, but another rule after, that denies it .)&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 20:23:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248719#M12627</guid>
      <dc:creator>smith-it</dc:creator>
      <dc:date>2025-05-12T20:23:32Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248721#M12628</link>
      <description>&lt;P&gt;That looks right to me, but will check in the lab later. Do you even see a single log on that rule?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 20:47:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248721#M12628</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-05-12T20:47:22Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248722#M12629</link>
      <description>&lt;P&gt;Thinking about this, question...what IP is the source? I mean, dont tell me the actual IP, just first octet of the range. I ask, because UNLESS that macbook is external IP, rule definitely wont work in your case, specially if you want to limit them when they are outside the office.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 21:28:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248722#M12629</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-05-12T21:28:48Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248733#M12632</link>
      <description>&lt;P&gt;For such a rule to work, it needs to be set to Strict.&lt;BR /&gt;This also means some additional explicit rules may need to be configured (e.g. for Outbound Internet access).&lt;/P&gt;</description>
      <pubDate>Mon, 12 May 2025 22:21:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248733#M12632</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-05-12T22:21:59Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248901#M12646</link>
      <description>&lt;P&gt;I changed to Strict &amp;gt; No difference&lt;/P&gt;&lt;P&gt;Macbook has an IP from the local Network.&lt;/P&gt;&lt;P&gt;It seems Local Access to the WebGui does not Hit the Access Policy. I see no "Allowed by Rule x" for the WebGui.&lt;/P&gt;&lt;P&gt;I know from Other Vendors that Access to Management Blade with Time restrictions could not be configured by GUI, but only by CLI.&lt;/P&gt;</description>
      <pubDate>Wed, 14 May 2025 06:36:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248901#M12646</guid>
      <dc:creator>smith-it</dc:creator>
      <dc:date>2025-05-14T06:36:53Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248907#M12647</link>
      <description>&lt;P&gt;Try to set:&lt;/P&gt;
&lt;P&gt;&lt;CODE&gt;set fw policy advanced-settings log-implied-rules true&lt;/CODE&gt;&lt;/P&gt;
&lt;P&gt;Should show the used implied rule in logs. Implied Rules on SMB include:&lt;/P&gt;
&lt;TABLE id="Unique_ID_Implied_RulesTable" class="footnote" border="1" cellspacing="2" cellpadding="4"&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD&gt;Accept Web and SSH connections for Gateway's administration (Small Office Appliance)&lt;/TD&gt;
&lt;TD&gt;Accepts Web and SSH connections to the Quantum Spark / SMB appliances.&lt;/TD&gt;
&lt;TD&gt;&amp;nbsp;&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD&gt;Accept incoming traffic to DHCP and DNS services of gateways (Small Office Appliance)&lt;/TD&gt;
&lt;TD&gt;Accepts the IPv4 DHCP server, DHCP relay, and DNS proxy connections to the Quantum Spark / SMB appliances.&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;
&lt;P&gt;&lt;CODE&gt;&lt;/CODE&gt;(sk179346)&lt;/P&gt;
&lt;P&gt;Implied Rules should be disabled by Strict Mode, so your rule should work as expected !&lt;/P&gt;</description>
      <pubDate>Wed, 14 May 2025 07:36:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248907#M12647</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-05-14T07:36:49Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248913#M12648</link>
      <description>&lt;P&gt;Now I can see the logs. Access to WebGui is allowed by Rule 0. So it doesnt Hit my manualy configured Rules.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The FW is set to STRICT, and yet i see Rule 0. Does that not contradict the statement:&amp;nbsp;&lt;SPAN&gt;Implied Rules should be disabled by Strict Mode, ?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 14 May 2025 08:04:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248913#M12648</guid>
      <dc:creator>smith-it</dc:creator>
      <dc:date>2025-05-14T08:04:15Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248917#M12649</link>
      <description>&lt;P&gt;I changed it to strict. Still not working. See my further Answers below&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 14 May 2025 08:21:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248917#M12649</guid>
      <dc:creator>smith-it</dc:creator>
      <dc:date>2025-05-14T08:21:23Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248933#M12650</link>
      <description>&lt;P&gt;Open SR# with CP TAC - should not be that way...&lt;/P&gt;</description>
      <pubDate>Wed, 14 May 2025 09:22:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248933#M12650</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-05-14T09:22:57Z</dc:date>
    </item>
    <item>
      <title>Re: Management Access - Time Limit</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248993#M12653</link>
      <description>&lt;P&gt;If you're getting accepts on Rule 0, the connection is being allowed through implied rules.&lt;BR /&gt;My understanding is that Strict should disable these, but perhaps that behavior has changed.&lt;BR /&gt;In any case, TAC will be necessary here.&lt;/P&gt;</description>
      <pubDate>Wed, 14 May 2025 14:48:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Management-Access-Time-Limit/m-p/248993#M12653</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-05-14T14:48:12Z</dc:date>
    </item>
  </channel>
</rss>

