<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Limit management access in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142332#M6458</link>
    <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/687"&gt;@Danny&lt;/a&gt;&amp;nbsp;made a good point...maybe if you send us few screenshots showing how this is configured, we would get better idea to assist you.&lt;/P&gt;</description>
    <pubDate>Wed, 23 Feb 2022 15:58:17 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2022-02-23T15:58:17Z</dc:date>
    <item>
      <title>Limit management access</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142258#M6453</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I am at the beginning of my journey with CheckPoints. Starting with 1570W. The Security Gateway is very easy to understand and learn.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have a question, which I couldn't find the answer for. The gateway is being used as default gateway for 3 subnets - 192.168.1.X, 192.168.2.X and 192.168.99.X. The third subnets is for management.&lt;/P&gt;&lt;P&gt;I would like to limit the management accessibility in such a way that admins will be able to access the firewall just by the management IP address. Currently, any person on these 3 subnets can access the firewall over port 4434.&lt;/P&gt;&lt;P&gt;I tried to make a policy, which prevents access over port 4434 to the IP address other then the management IP, but this didn't work.&lt;/P&gt;&lt;P&gt;Can you please advise if this is achievable?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Feb 2022 03:19:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142258#M6453</guid>
      <dc:creator>Kolobok</dc:creator>
      <dc:date>2022-02-23T03:19:23Z</dc:date>
    </item>
    <item>
      <title>Re: Limit management access</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142263#M6454</link>
      <description>&lt;P&gt;Can you show us your prevent configuration? What does your firewall log show?&lt;/P&gt;</description>
      <pubDate>Wed, 23 Feb 2022 07:36:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142263#M6454</guid>
      <dc:creator>Danny</dc:creator>
      <dc:date>2022-02-23T07:36:05Z</dc:date>
    </item>
    <item>
      <title>Re: Limit management access</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142278#M6455</link>
      <description>&lt;P&gt;If you have fixed IPs on the internal networks, you can configure Device &amp;gt; System &amp;gt; Admin Access to let just selected users log in&amp;nbsp;&lt;SPAN&gt;from these 3 subnets...&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Feb 2022 09:15:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142278#M6455</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-02-23T09:15:44Z</dc:date>
    </item>
    <item>
      <title>Re: Limit management access</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142288#M6456</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;&amp;nbsp; - can you put this to SMB ?&lt;/P&gt;</description>
      <pubDate>Wed, 23 Feb 2022 11:48:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142288#M6456</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-02-23T11:48:19Z</dc:date>
    </item>
    <item>
      <title>Re: Limit management access</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142322#M6457</link>
      <description>&lt;P&gt;done&lt;/P&gt;</description>
      <pubDate>Wed, 23 Feb 2022 14:57:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142322#M6457</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-02-23T14:57:25Z</dc:date>
    </item>
    <item>
      <title>Re: Limit management access</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142332#M6458</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/687"&gt;@Danny&lt;/a&gt;&amp;nbsp;made a good point...maybe if you send us few screenshots showing how this is configured, we would get better idea to assist you.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Feb 2022 15:58:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142332#M6458</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-02-23T15:58:17Z</dc:date>
    </item>
    <item>
      <title>Re: Limit management access</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142347#M6460</link>
      <description>&lt;P&gt;When you said any person can access the firewall are you referring to accounts with admin permissions?&lt;/P&gt;
&lt;P&gt;What you are trying is just that the firewall is reachable via 1 IP address only or to just permit access using the least privilege mode to only specific admins accounts?&lt;/P&gt;
&lt;P&gt;What are your expectations, please elaborate,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Feb 2022 21:36:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142347#M6460</guid>
      <dc:creator>K_montalvo</dc:creator>
      <dc:date>2022-02-23T21:36:08Z</dc:date>
    </item>
    <item>
      <title>Re: Limit management access</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142358#M6461</link>
      <description>&lt;P&gt;Here is a screenshot of the internal interfaces.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The idea is to allow manage the firewall just by accessing the 192.168.99.1 and prevent the ability to manage it through 192.168.10.1 or 192.168.20.1.&lt;/P&gt;</description>
      <pubDate>Thu, 24 Feb 2022 03:19:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142358#M6461</guid>
      <dc:creator>Kolobok</dc:creator>
      <dc:date>2022-02-24T03:19:17Z</dc:date>
    </item>
    <item>
      <title>Re: Limit management access</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142438#M6470</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I found this on the CP_R80.20.35_1500_1600_1800_Appliance_Series_AdminGuide_Locally_Managed starting on page 109; The &lt;STRONG&gt;Device &amp;gt; Administrator Access&lt;/STRONG&gt; page lets you configure the IP addresses and interface sources that&lt;BR /&gt;administrators can use to access the Quantum Spark Appliance. You can also configure the Web and SSH&lt;BR /&gt;ports.&lt;/P&gt;
&lt;P&gt;I don't know witch Embedded Gaia are you running but you can see if the above works for you,&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/SMB_R80.20.35/AdminGuides/Locally_Managed/EN/Topics/Quantum-Spark-1500-1600-1800-Appliance-Series-Overview.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/SMB_R80.20.35/AdminGuides/Locally_Managed/EN/Topics/Quantum-Spark-1500-1600-1800-Appliance-Series-Overview.htm&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Thu, 24 Feb 2022 18:44:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Limit-management-access/m-p/142438#M6470</guid>
      <dc:creator>K_montalvo</dc:creator>
      <dc:date>2022-02-24T18:44:54Z</dc:date>
    </item>
  </channel>
</rss>

