Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
RemoteUser
Advisor

Clarification on Rule for Remote Access Connections

Hi Mates,

I have a question regarding a configuration I noticed on the customer environment.

There is an open rule allowing traffic from Any to the cluster object (IP 10.20.30.40) on ports 80/443. When I connect via VPN client, this rule is being hit.

I checked under Global Properties > Firewall, and I see the option:
“Accept Remote Access control connections”, which allows Remote Access VPN clients to connect to the Security Gateways.

My question is: can I safely disable this rule, or is it better to verify something else before doing so?

0 Kudos
2 Replies
Chris_Atkinson
MVP Platinum CHKP MVP Platinum CHKP
MVP Platinum CHKP

To clarify which rule are you considering disabling the configured rule or the global properties option?

sk180808 / sk105740 / sk60773 often come up in discussion relating to similar.

 

CCSM R77/R80/ELITE
RemoteUser
Advisor

Hi @Chris_Atkinson

Yes, I need to disable an explicit rule in the rule base (src: Any → dst: cluster object → services: 80/443 → action: Accept).

When I connect using the VPN client, I can see that my public IP matches this rule (443). I haven’t changed anything in the Global Properties options.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Thu 07 May 2026 @ 01:30 PM (AEST)

    CheckMates Live Sydney

    Tue 02 Jun 2026 @ 09:00 AM (CEST)

    CheckMates Live Denmark - Aarhus

    Wed 03 Jun 2026 @ 09:00 AM (CEST)

    CheckMates Live Denmark - Copenhagen
    CheckMates Events