- Products
- Learn
- Local User Groups
- Partners
- More
What's New in R82.10?
Watch HereWhen the Agents Attack
A Live Look at Agentic Exposure Validation
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
CheckMates Go:
CheckMates Fest
Working on Checkpoint Appliances R81.10
OS Gaia
I need to create a security rule that will permit from a source (frequently changing CIDR block) to an internal host on 443
For example:
source(https://ip-ranges.atlassian.com] destinaion (static nat ip > internal host] on port 443
The challenge I am trying to overcome is the src ip's will change frequently. Looking at the documentation there looks to be a feature that supports this
Generic Data Center feature (checkpoint.com)
However when I create the object I get an error when importing it to the rule. All it says failed to import and check the logs.
Is there any other way to achieve this without having to manually check when the source json changes?
Hi @PhoneBoy , @Finner1976
This is exactly the reason we created Network Feed in R81.20, to provide customers the ability to use JSON feeds (or lists) in their policy easily.
My recommendation is to upgrade to R81.20 and use the Network Feed option.
Thanks.
Hello Finner1976,
We have created GDC objects based on JSON files, and as long as the JSON is valid and it respects the format required, you should be good.
One thing I had noticed, is that if we were to combine IPV4 with IPV6, it would fail loading and give an error, so can you look into that.
As I looked to the file from Atlassian, its an JSON but the format is not good for importing into Checkpoint GDC. So, can you share the process/script you're using to convert the data to JSON, or you didn't convert it .
Thank you,
To assist in creating a properly formatted JSON file, you can use the following command to get all the IP ranges (in CIDR format) from the website:
curl https://ip-ranges.atlassian.com | jq '.items[].cidr'
This can be part of a script that periodically generates a properly structured JSON file that will be acceptable by the Generic Datacenter feature.
Or you can likely use '.items[].cidr' as the filter when configuring the website as part of the Network Feeds feature in R81.20.
Generic Datacenter Objects use the CloudGuard Controller infrastructure.
This implies:
The specified JSON file (be it by URL or local file) must be in the format specified in sk167210.
If you're using the contents of https://ip-ranges.atlassian.com "as-is" it won't work.
Which leaves you with a couple of options:
Having said that, given this vendor provides information in a structured format, it seems like a nice candidate for an Updatable Object.
Tagging @Micky_Michaeli
If we end up making this an Updatable Object, you'll be able to import it into your Access Policy.
Hi @PhoneBoy , @Finner1976
This is exactly the reason we created Network Feed in R81.20, to provide customers the ability to use JSON feeds (or lists) in their policy easily.
My recommendation is to upgrade to R81.20 and use the Network Feed option.
Thanks.
To assist in creating a properly formatted JSON file, you can use the following command to get all the IP ranges (in CIDR format) from the website:
curl https://ip-ranges.atlassian.com | jq '.items[].cidr'
This can be part of a script that periodically generates a properly structured JSON file that will be acceptable by the Generic Datacenter feature.
Or you can likely use '.items[].cidr' as the filter when configuring the website as part of the Network Feeds feature in R81.20.
Hello Finner1976,
We have created GDC objects based on JSON files, and as long as the JSON is valid and it respects the format required, you should be good.
One thing I had noticed, is that if we were to combine IPV4 with IPV6, it would fail loading and give an error, so can you look into that.
As I looked to the file from Atlassian, its an JSON but the format is not good for importing into Checkpoint GDC. So, can you share the process/script you're using to convert the data to JSON, or you didn't convert it .
Thank you,
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 3 | |
| 2 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Thu 25 Jun 2026 @ 10:00 AM (PDT)
AI Security Masters E10: READY OR NOT: Securing the AI Enterprise 2/5 - AI Red TeamingThu 02 Jul 2026 @ 06:00 PM (CST)
Revolucionando la Seguridad con IA Generativa: Prevención Inteligente en Tiempo RealThu 09 Jul 2026 @ 11:00 AM (CEST)
The Cloud Architects Series: Check Point Edge Protection SD-WAN & SASETue 14 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E11: READY OR NOT: Securing the AI Enterprise 3/5 - AI Workforce SecurityThu 30 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E12: READY OR NOT: Securing the AI Enterprise 4/5 - AI GatewayThu 20 Aug 2026 @ 10:00 AM (PDT)
AI Security Masters E13: READY OR NOT: Securing the AI Ent 5/5 - AI Research & Threat LandscapeThu 25 Jun 2026 @ 10:00 AM (PDT)
AI Security Masters E10: READY OR NOT: Securing the AI Enterprise 2/5 - AI Red TeamingTue 14 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E11: READY OR NOT: Securing the AI Enterprise 3/5 - AI Workforce SecurityThu 30 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E12: READY OR NOT: Securing the AI Enterprise 4/5 - AI GatewayThu 20 Aug 2026 @ 10:00 AM (PDT)
AI Security Masters E13: READY OR NOT: Securing the AI Ent 5/5 - AI Research & Threat LandscapeThu 02 Jul 2026 @ 06:00 PM (CST)
Revolucionando la Seguridad con IA Generativa: Prevención Inteligente en Tiempo RealAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY