- Products
- Learn
- Local User Groups
- Partners
- More
Policy Insights and Policy Auditor in Action
19 November @ 5pm CET / 11am ET
Access Control and Threat Prevention Best Practices
Watch HereOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello All,
Installed Checkpoint R81 server and able to access web UI only from the system where it is installed and not from other system in same LAN network.
Also we are trying to access Checkpoint server through API. It is accessible from the server system but not from other systems in same network. Command which we are using to access is listed below.
curl --insecure -XPOST "https://X.X.X.X:443/web_api/login" --data-binary "{\"user\": \"admin\", \"password\": \"XXXXX\"}" -H "Content-Type: application/json"
But we are getting Operation timed out.
We have also set All IP Address in Management API settings and restarted the API.
Please let us know if we have to change any settings ? Your assist will be of great help to us.
Thanks
Management or GW, or standalone? Looks like a connectivity issue. If this is a GW, try unload local policy (fw unloadlocal)
If management, check the routing and network settings.
Hello Val,
It is Standalone and We have set Host Access and Client GUI as "any"
We are still facing the issue. Any specific configuration or settings to change so we can access web ui and API from other system in same network?
Your guide will be of great help to us.
As I said, try unloading the policy. If that does not help, check you have connectivity to the server at all. It is a basic networking issue, most probably
Hi, Thanks,
I have tried unloading the policy, still it dint work,
also connectivity to the server looks fine, it works when pinging the server from any other machine.
Please let me know, if I am missing anything.
What do you see in a tcpdump / packet capture?
Hello Chris,
As you Suggested, We did the tcpdump and are able to see ICMP and connection only but not HTTP related requests
But our priority is we are unable to connect to Checkpoint Management server using HTTP request from different system even after setting up a policy to connect to the server from any IP address.
Also we are able to ping to Checkpoint from all the systems. But when we try with HTTP request, It says failed to readch network.
Could you please let us know if there is any configuration to be made in the Checkpoint so we can access web portal from all the systems in our Environment.
If you don't see the HTTP traffic in a tcpdump captured on the device, that means one of two things. Either the client isn't sending it (e.g, some web filtering application like Zscaler is preventing the request from going out), OR the client is sending it somewhere else (e.g, the client is trying to use a proxy server).
Neither case is something you can fix on the Check Point side. They're client-side problems.
Is there an ARP entry for the management on the client you are attempting to access from?
What precisely do you see in tcpdump when you ping and/or use HTTPS:
This really sounds like something on your LAN is filtering traffic.
NSX-T comes to mind as something people may overlook. If you have strict policies there they are most likely blocking your access.
Any proxy settings involved on the client PC, are local networks/URLs excluded?
Hi Chris,
Just want to Check one thing quick, In Checkpoint configuration, Do we have to define any NAT settings so we can access Checkpoint server UI from External Network ?
Please let us know so we do not consider NAT settings as our Blocker ?
Thanks again
Possibly but it's not check point specific (normal networking) and entirely depends on the source/destination IPs involved.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 25 | |
| 15 | |
| 13 | |
| 10 | |
| 6 | |
| 4 | |
| 3 | |
| 3 | |
| 3 | |
| 3 |
Wed 19 Nov 2025 @ 11:00 AM (EST)
TechTalk: Improve Your Security Posture with Threat Prevention and Policy InsightsThu 20 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERThu 20 Nov 2025 @ 10:00 AM (CST)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - EMEAWed 19 Nov 2025 @ 11:00 AM (EST)
TechTalk: Improve Your Security Posture with Threat Prevention and Policy InsightsThu 20 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERThu 20 Nov 2025 @ 10:00 AM (CST)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - EMEAThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY