- CheckMates
- :
- Products
- :
- Quantum
- :
- Management
- :
- Re: Block uri on firewall
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Block uri on firewall
Dear Team,
Can we block uri on checkpoint firewall.
For eg.
^/+dana/+meeting
^/+dana/+fb/+smb
/+dana-cached/+fb/+smb
^/+dana-ws/+namedusers
^/+dana-ws/+metric
Regards,
Vinay Adsul
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
First you need SSL Inspection on gateway; Second you can look up Check Point documentation on URL Filtering.
But according to the documentation from vendor, the mitigation should be applied on the server itself.
You can also choose to import the snort rule from fireeye into the Check Point gateway.
https://github.com/fireeye/pulsesecure_exploitation_countermeasures/
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
we need to block uri on checkpoint firewall , i going to this for first time on checkpoint firewall. qos has suggested to follow below document.but i need to create uri object there are multiple setting and where i need to call this object.
Uri that i need to block are related with Pulse vpn vernability. Need steps to block uri on checkpoint firewall.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Sounds like you are not familiar with such creation. Instead of trying to creating something to block it, why don't you just import the relevant snort rules?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Never tried doing that...you may want to open the case with TAC about it. I cant say for sure if that would work 100% even if ssl inspection is enabled on the gateway.
