- Products
- Learn
- Local User Groups
- Partners
- More
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
Join our TechTalk: Malware 2021 to Present Day
Building a Preventative Cyber Program
Be a CloudMate!
Check out our cloud security exclusive space!
Check Point's Cyber Park is Now Open
Let the Games Begin!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
Doesn't seem to be possible from what I can tell, I poked around in the GUIdbedit objects_5_0.C settings and the $FWDIR/lib/*.def files and didn't see any kind of property setting that controls this behavior.
Can you elaborate please? What are you trying to achieve?
I am trying to enable AppCtrl on our GWs. This is done by activating the blade activating the protocol signature in the respective services, that are used in the access layer. Unfortunately the protocol signature check is disabled by default in any service and must be activated manually. I want to activate it by default, so any service has the box check automatically.
I think you misunderstand what Application Control is, and how it is intended to work.
There are services, and there are applications. You can use both in the rulebase. Maybe start with sk112249 and Admin manuals.
The R80+ Protocol Signature & Protocol settings on the service objects are the source of a lot of confusion but as Val said is mostly separate from Application Control. Understanding the ramifications of enabling the Protocol Signature setting beforehand is highly advisable. This seems to be one area that does not have a lot of documentation, so I took my best shot at trying to explain it in my unpublished "APCL/URLF Immersion" class for a private customer. Whether I did a good job or not is left as an exercise for the reader, see below. 😀
Thanks for the explanation. So is there a way to enable the protocol signature check by default on any supporting protocols/services/whatever-you-may-name-them?
Doesn't seem to be possible from what I can tell, I poked around in the GUIdbedit objects_5_0.C settings and the $FWDIR/lib/*.def files and didn't see any kind of property setting that controls this behavior.
Not all services are having those signatures in the first place.
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY