- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hi guys,
I need to configure the access to MS Teams in disconnected state on the Endpoint Firewall blade.
On gateways there is the opportunity of using updateable objects. These objects are not available on firewall rule in endpoint side.
I tried to add some updateable objects to a network group, which I can use on endpoint firewall rules but the installation will fail with an internal error.
So are there other options to handle all the domains, IPs etc. for firewall rules?
Looking forward to your ideas.
Cheers,
Olli
I will do my best to help you out. Not really an endpoint person, but I have access to few environments, so can definitely look into it. Would you mind send a screenshot of what you tried? You can blur out any sensitive info.
Btw, I do see in the policy there is an option to add url filtering exclusions. What I always do on the firewall is this...say you want to allow ANYTHING microsoft, I just do *microsoft* and works 100% of the time, never had an issue, not once.
Cheers,
Andy
Hi Andy,
@the_rock wrote:I will do my best to help you out. Not really an endpoint person, but I have access to few environments, so can definitely look into it. Would you mind send a screenshot of what you tried? You can blur out any sensitive info.
Btw, I do see in the policy there is an option to add url filtering exclusions. What I always do on the firewall is this...say you want to allow ANYTHING microsoft, I just do *microsoft* and works 100% of the time, never had an issue, not once.
Cheers,
Andy
URL Filter is not an option on Check Point Harmony (Endpoint) and *microsoft* is not supported on end point firewall rules.
You could try the other Harmony Endpoint modules:
Application control on end point or on perimeter?
If is could be an option the question is what will win? Firewall or application policy?
Both of these are options on Harmony Endpoint (what the question was about).
For your use case at the endpoint level....in my opinion the best way would be through Appication Control (to allow or disallow the MS TEAMS program/process to run or access the network.)
Agree 100%.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 8 | |
| 3 | |
| 2 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY