- CheckMates
- :
- Products
- :
- General Topics
- :
- Checkpoint Policy
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Jump to solution
Checkpoint Policy
1 Solution
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
For vpn, rule 1 is fine in network layer. If you have another ordered layer with urlf+appc blades enabled, then rule 2 would belong in that layer.
5 Replies
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
If its traffic via s2s vpn, then forst picture example is good enough. What is the 2nd one for? (CP2)
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
2nd pc is policy for application, should be paired also?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Ok, if its totally seperate rule for app control, then yes. But if you wanted to add 2nd rule for s2s vpn tunnel, you dont need it, just 1st rule is good.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
hello, so for Network Policy i can remove 2nd rule and for Application policy both rule is used, am i right?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
For vpn, rule 1 is fine in network layer. If you have another ordered layer with urlf+appc blades enabled, then rule 2 would belong in that layer.
