Hi @the_rock and @Matlu
This is the same details:
We have 12 cluster where in the most of the policy packages we follow the below layer wise rule:
Layer 1: Network Rule
Layer 2: Application and URL Filtering Rule
Layer 3: Content Awareness Rule
This is the below rule we configured in the one ABC Policy Package
In Layer 1 Rule: Source:Any Network Objest,Destination:Any,Service:Any,Action:Accept
In Layer 2 Rule: Source:Any ,Destination:Any,Service:All Services Object(PORT:80,443,x),Action:Accept
In Layer 3 Rule: Create rule as per the compliance
When we try to access the URL:https://gem.gov.in/(IP:14.140.34.123) then we able to access the URL from one cluster but unable to access from the another cluster.
FInd the below details the we get:
In Layer 1 Rule: Implict Cleanup Action:Accept
In Layer 2 Rule: CPNotEnoughDataForRuleMatch Action:Accept
In Layer 3 Rule: CPNotEnoughDataForRuleMatch Action:Accept
Now my question is that if the Default gateway is not the Checkpoint firewall then I check the internal L3 devicesand analyze the traffic but if my source machine L3 is checkpoint firewall then still issue come or not? (My answer is YES)
Also as final what is the solution recommendation?
My one plan is to create a rule on top and check the status. (Correct me If I am wrong)
Regards
@Chinmaya_Naik