- Products
- Learn
- Local User Groups
- Partners
-
More
Celebrate the New Year
With CheckMates!
Value of Security
Vendor Self-Awareness
Join Us for CPX 360
23-24 February 2021
Important certificate update to CloudGuard Controller, CME,
and Azure HA Security Gateways
How to Remediate Endpoint & VPN
Issues (in versions E81.10 or earlier)
Mobile Security
Buyer's Guide Out Now
Important! R80 and R80.10
End Of Support around the corner (May 2021)
Hello all.
I noticed that HTTP access to each of nodes in a cluster is enabled by implied rules.
Is there a way to disable it? Maybe locally because the customer have 5 clusters under the same Management and I would like to avoid global changes...
Below the enabled blades and the log row.
Thanks in advance.
Regards.
Stefano.
Yes, GWs are allowed to open outgoing connections via implied rules. This is usually required for normal functions. If you change that, some features: AVI & IPS updates, URL and AC categorization and others, may not work.
Why are you concerned with this in the first place?
So it is not gateway originated connection, the other way around.
Firstly, having http port open does not mean vulnerability.
GW may have one or more portals: WebUI, Mobile Access, Identity Awareness, etc. Those are also needed for functioning correctly. If you are concerned with WebUI being accessed from outside of protected perimeter, you can change the port and interfaces it is available through on GW object, Portals tab
About CheckMates
Learn Check Point
Advanced Learning
WELCOME TO THE FUTURE OF CYBER SECURITY