<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Are there any implied rules on SMB appliances and can I show them? in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31393#M1281</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;NTP (UDP 123) is not listed explicitly in&amp;nbsp;&lt;EM style="color: #333333; background-color: #ffffff; border: 0px;"&gt;implied_rules.def -&lt;/EM&gt; but if you look inside the file you will see rather complex macros that generate the implied rule base. Just as an addition, we also have this one here:&amp;nbsp;&lt;A class="" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk119497&amp;amp;partition=General&amp;amp;product=SmartConsole"&gt;sk119497: &lt;STRONG&gt;Implied&lt;/STRONG&gt; &lt;STRONG&gt;rules&lt;/STRONG&gt; are generated but not displayed in the &lt;STRONG&gt;Implied&lt;/STRONG&gt; &lt;STRONG&gt;Rules&lt;/STRONG&gt; view&lt;/A&gt;.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 08 Feb 2019 10:41:54 GMT</pubDate>
    <dc:creator>G_W_Albrecht</dc:creator>
    <dc:date>2019-02-08T10:41:54Z</dc:date>
    <item>
      <title>Are there any implied rules on SMB appliances and can I show them?</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31389#M1277</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi guys,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We used to configure "standard rules" for gateways, something like this:&lt;/P&gt;&lt;TABLE class="j-table jiveBorder" style="border: 1px solid #c6c6c6;" width="100%"&gt;&lt;THEAD&gt;&lt;TR style="background-color: #efefef;"&gt;&lt;TH style="width: 12.2961%;"&gt;Source&lt;/TH&gt;&lt;TH style="width: 19.197%;"&gt;Destination&lt;/TH&gt;&lt;TH style="width: 19.197%;"&gt;Application&lt;/TH&gt;&lt;TH style="width: 12.9235%;"&gt;Service&lt;/TH&gt;&lt;TH style="width: 13.9272%;"&gt;Action&lt;/TH&gt;&lt;TH style="width: 14.1782%;"&gt;Comment&lt;/TH&gt;&lt;/TR&gt;&lt;/THEAD&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD style="width: 12.2961%;"&gt;This GW&lt;/TD&gt;&lt;TD style="width: 19.197%;"&gt;Internet&lt;/TD&gt;&lt;TD style="width: 19.197%;"&gt;Any&lt;/TD&gt;&lt;TD style="width: 12.9235%;"&gt;NTP&lt;/TD&gt;&lt;TD style="width: 13.9272%;"&gt;allow&lt;/TD&gt;&lt;TD style="width: 14.1782%;"&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="width: 12.2961%;"&gt;&lt;SPAN&gt;This GW&lt;/SPAN&gt;&lt;/TD&gt;&lt;TD style="width: 19.197%;"&gt;Internet&lt;/TD&gt;&lt;TD style="width: 19.197%;"&gt;Any&lt;/TD&gt;&lt;TD style="width: 12.9235%;"&gt;DNS&lt;/TD&gt;&lt;TD style="width: 13.9272%;"&gt;allow&lt;/TD&gt;&lt;TD style="width: 14.1782%;"&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="width: 12.2961%;"&gt;&lt;SPAN&gt;This GW&lt;/SPAN&gt;&lt;/TD&gt;&lt;TD style="width: 19.197%;"&gt;&lt;SPAN&gt;Internet&lt;/SPAN&gt;&lt;/TD&gt;&lt;TD style="width: 19.197%;"&gt;Any&lt;/TD&gt;&lt;TD style="width: 12.9235%;"&gt;ICMP&lt;/TD&gt;&lt;TD style="width: 13.9272%;"&gt;allow&lt;/TD&gt;&lt;TD style="width: 14.1782%;"&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR&gt;&lt;TD style="width: 12.2961%;"&gt;&lt;SPAN&gt;This GW&lt;/SPAN&gt;&lt;/TD&gt;&lt;TD style="width: 19.197%;"&gt;&lt;SPAN&gt;Internet&lt;/SPAN&gt;&lt;/TD&gt;&lt;TD style="width: 19.197%;"&gt;Any&lt;/TD&gt;&lt;TD style="width: 12.9235%;"&gt;HTTP(S)&lt;/TD&gt;&lt;TD style="width: 13.9272%;"&gt;allow&lt;/TD&gt;&lt;TD style="width: 14.1782%;"&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The goal was to allow the gateway to set up connections for the update service, license service, etc.&lt;/P&gt;&lt;P&gt;Now I tried the connections withous these rules above and it worked without any problems.&lt;/P&gt;&lt;P&gt;I'd like to know:&lt;/P&gt;&lt;P&gt;Are there any implied rules on the SMB appliances, which allow the gateway to connect to the update service, get time updates, etc?&lt;/P&gt;&lt;P&gt;Are there any possibilities to display them?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Best Regards&lt;/P&gt;&lt;P&gt;Severin Dellsperger&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Feb 2019 15:19:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31389#M1277</guid>
      <dc:creator>sdellsperger</dc:creator>
      <dc:date>2019-02-07T15:19:29Z</dc:date>
    </item>
    <item>
      <title>Re: Are there any implied rules on SMB appliances and can I show them?</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31390#M1278</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I suggest you take a look at this:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A href="https://community.checkpoint.com/docs/DOC-2807-changing-impliedrulesdef-on-locally-managed-smbs" target="_blank"&gt;https://community.checkpoint.com/docs/DOC-2807-changing-impliedrulesdef-on-locally-managed-smbs&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Jun 2019 09:17:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31390#M1278</guid>
      <dc:creator>HristoGrigorov</dc:creator>
      <dc:date>2019-06-21T09:17:43Z</dc:date>
    </item>
    <item>
      <title>Re: Are there any implied rules on SMB appliances and can I show them?</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31391#M1279</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This is what I searched for &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&lt;/P&gt;&lt;P&gt;Unfortunately I couldn't find any definition for NTP.&lt;/P&gt;&lt;P&gt;Does someone know, where to find the implied NTP rule?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Feb 2019 09:02:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31391#M1279</guid>
      <dc:creator>sdellsperger</dc:creator>
      <dc:date>2019-02-08T09:02:32Z</dc:date>
    </item>
    <item>
      <title>Re: Are there any implied rules on SMB appliances and can I show them?</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31392#M1280</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I checked how it is in centrally managed appliances and there is the following rule:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG class="image-1 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/78266_pastedImage_1.png" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Perhaps there is similar one when locally managed, not explicitly for NTP?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Feb 2019 09:22:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31392#M1280</guid>
      <dc:creator>HristoGrigorov</dc:creator>
      <dc:date>2019-02-08T09:22:10Z</dc:date>
    </item>
    <item>
      <title>Re: Are there any implied rules on SMB appliances and can I show them?</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31393#M1281</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;NTP (UDP 123) is not listed explicitly in&amp;nbsp;&lt;EM style="color: #333333; background-color: #ffffff; border: 0px;"&gt;implied_rules.def -&lt;/EM&gt; but if you look inside the file you will see rather complex macros that generate the implied rule base. Just as an addition, we also have this one here:&amp;nbsp;&lt;A class="" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk119497&amp;amp;partition=General&amp;amp;product=SmartConsole"&gt;sk119497: &lt;STRONG&gt;Implied&lt;/STRONG&gt; &lt;STRONG&gt;rules&lt;/STRONG&gt; are generated but not displayed in the &lt;STRONG&gt;Implied&lt;/STRONG&gt; &lt;STRONG&gt;Rules&lt;/STRONG&gt; view&lt;/A&gt;.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Feb 2019 10:41:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31393#M1281</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2019-02-08T10:41:54Z</dc:date>
    </item>
    <item>
      <title>Re: Are there any implied rules on SMB appliances and can I show them?</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31394#M1282</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes it could be, thanks for help&lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Feb 2019 10:53:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31394#M1282</guid>
      <dc:creator>sdellsperger</dc:creator>
      <dc:date>2019-02-08T10:53:51Z</dc:date>
    </item>
    <item>
      <title>Re: Are there any implied rules on SMB appliances and can I show them?</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31395#M1283</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the info, as long as it works it's fine for me.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 08 Feb 2019 10:56:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Are-there-any-implied-rules-on-SMB-appliances-and-can-I-show/m-p/31395#M1283</guid>
      <dc:creator>sdellsperger</dc:creator>
      <dc:date>2019-02-08T10:56:21Z</dc:date>
    </item>
  </channel>
</rss>

