Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Ari_who
Explorer
Jump to solution

Application control VS. HTTPS Inspection

Hey friends,

I'm trying to block usage of AnyDesk.

1. I added an https inspection rule in the Outbound Policy.

2. I added a rule in Application Control blocking AnyDesk.

Then I tested it and it indeed blocks AnyDesk traffic.

Because HTTPS Inspection broke some other, permitted activity, I disabled the HTTPS Inspection rule.

Somehow, AnyDesk is still blocked. 

My question is, doesn't Application control require https inspection? How does it still work when the HTTPS Inspection rule has been disabled? 

I've attached a screenshot of both rules.

The MGMT server is at R82 JHF 91

Thank you!

Ari

 
 

 

0 Kudos
1 Solution

Accepted Solutions
Timothy_Hall
MVP Gold
MVP Gold

You almost certainly have "Categorize HTTPS websites" set.  Here is a page from my upcoming Max Power 2026 book discussing it:

mp_lite.png

New Book: "Max Power 2026" Coming Soon
Check Point Firewall Performance Optimization

View solution in original post

0 Kudos
4 Replies
Chris_Atkinson
MVP Platinum CHKP MVP Platinum CHKP
MVP Platinum CHKP

Whilst AppC is less effective without HTTPS it can still work where we can leverage SNI.

For best results SSL inspection is desirable (and becoming more necessary).

CCSM R77/R80/ELITE
Timothy_Hall
MVP Gold
MVP Gold

You almost certainly have "Categorize HTTPS websites" set.  Here is a page from my upcoming Max Power 2026 book discussing it:

mp_lite.png

New Book: "Max Power 2026" Coming Soon
Check Point Firewall Performance Optimization
0 Kudos
Chris_Atkinson
MVP Platinum CHKP MVP Platinum CHKP
MVP Platinum CHKP

Amazing news about the new book!

CCSM R77/R80/ELITE
0 Kudos
Ari_who
Explorer

You're absolutely correct, the URLF box is indeed checked!

Thanks for this thorough and excellent explanation!

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events