Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
gemechis
Explorer

Blocking Cloud Providers Private Tunnel

Recently, we have seen an issue where some device having an internet connectivity estbalished a tunnel with cloudflare and do access internal systems which are private and only accessed through LAN network. And he did access the system from public through cloudflare tunnel.

Is there any checkpoint could identify this things? As we have  checkpoint on the perimeter. And we are worried that there also other cloud providers who could offer this kind of future.

0 Kudos
3 Replies
PhoneBoy
Admin
Admin

To potentially detect this sort of thing, you’d need App Control and possibly HTTPS Inspection configured.
Not sure what Cloudflare service does what you describe. 

0 Kudos
(1)
gemechis
Explorer

@PhoneBoy 

How much resource does enabling HTTPS Inspection consumes. Conder we have a maestro deployment with 7000 series security gateways.

0 Kudos
PhoneBoy
Admin
Admin

It depends on a number of factors, but you can expect that it will cut the overall throughput in half.
You can get an idea of the impact by reviewing the data sheet for the 9800 (the successor to the 7000): https://www.checkpoint.com/downloads/products/quantum-force-9800-datasheet.pdf 

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events