- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Is there a way with either the gateway or the endpoint client to block an app or process to access the Internet?
We don't want to restrict the app from running but we don't want it to access the Internet.
Francis
You can use the Application Control and URL Filtering blades on the Security Gateway.
In Rulebase add the relevant application to the Services & Applications column:
Yes our problem is it's some small/obscure app that is not part of Checkpoint applications list
For that you can create a custom application using the URLs it uses
As @Tal_Paz-Fridman said, thats your best bet, for sure. As a matter of fact, I did the same in my lab and few customers and works 100% of the time.
Below is example in my R81.20 lab.
Andy
hmmm ok. But this feels more like URL filtering. You'd have to know where the app might try to connect to which is not our case unfortunately
Yes Francis, as @Tal_Paz-Fridman said, you can use app control/urlf for this. I can show you in my R81.20 lab where I have dedicated ordered layer just for this.
Andy
Hello,
Yes, there is. I think both fw and endpoint can do it, but if you have endpoint much better. You can use Application Control blade and you two options, terminate the app when it starts to run, or terminate the app when it tries to connect to network.
On firewall it is also possible, you can use the option provieded before (yes it is more like URL filtering feture). Or you can create a custom signature for specific application.
On both cases you must know where the app might tries to connect (If not, how could the firewall know what it has to block?). If you do not know you can always take some traffic captures and check.
Regards
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 12 | |
| 10 | |
| 9 | |
| 8 | |
| 6 | |
| 3 | |
| 2 | |
| 2 | |
| 2 | |
| 1 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY