- Products
- Learn
- Local User Groups
- Partners
- More
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Improve Your Security Posture with
Threat Prevention and Policy Insights
Overlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
I have been slowly implementing the application control, and noticed today the Overpage page listing a list of allowed high risk applications. One of those applications is loadm.exelator.com. I went to the Security Policies, Application and was going to make a rule to block it, but that application does not appear in list.
But when I research it in the logs, it lists it there, and a category even. How do I block it when it is not listed in the Applications list in the rulebase though?
See attached image for log entry.
Ofcourse yo can do it! you need to create a Custom Application/Site:
and then add the URLs that you want to block (or permit) in this custom category:
Check sk165094 for best practices: https://support.checkpoint.com/results/sk/sk165094
The log was generated by URL FILTERING blade (not Application Control Blade) so this should be blocked by URL Filtering "categories" (not an specific application) in your access policy.
If you have R81.10, check the admin guide here: https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_SecurityManagement_AdminGuid...
So I would block it by using the categories Spam, High Risk and URL Filtering, but there is no way to block it directly by the loadm.exelator.com that is listed, correct?
Ofcourse yo can do it! you need to create a Custom Application/Site:
and then add the URLs that you want to block (or permit) in this custom category:
Check sk165094 for best practices: https://support.checkpoint.com/results/sk/sk165094
Also....Check Point provides an online tool that allows you to check whether a URL is classified under one of the categories of the URL Filtering Blade. After you check the URL, this tool also allows you to suggest an alternative categorization for the URL:
https://urlcat.checkpoint.com/
All great points @MikeB
Thank you very much! Perfect
Btw, I will add one more thing on top of what @MikeB said. I know this has come up few times before, so figured would mention it. Some folks had said they whitelist all the needed sites, but they still get blocked. I spent, cant even count, how many hours with TAC and different customers troubleshooting this and I found way it works all the time, never let me down. So, here is what I mean by that.
Say you wish to block everything facebook or youtube, I simply create custom app/site as @MikeB pointed out and add *facebook* and *youtube* and thats it. Otherwise, I can tell you right now, if you try and follow all the examples given in the sk165094, no offense, but you might be on the phone till 3 am or longer lol
Just giving you my honest feedback/experience.
Cheers,
Andy
I agree with @MikeB , makes sense what he advised about which blade blocked this traffic.
Andy
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 13 | |
| 9 | |
| 8 | |
| 8 | |
| 8 | |
| 5 | |
| 5 | |
| 4 | |
| 4 | |
| 3 |
Wed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY