Hey guys,
Figured would share below, as this sort of rule is needed for correct SASE access.
source:
any (or whatever source appropriate)
dst:
.api.perimeter81.com*
.cws.checkpoint.com
.fonts.googleapis.com
.p81-assets.perimeter81.com
.perimeter81.com
.sdp.perimeter81.com*
.sdpv2-agent-ws.perimeter81.com
.company.perimeter81.com (example apple.perimeter81.com, whatever sase portal shows for the link)
.te.checkpoint.com
.upgrade.bitdefender.com
.url-rep.kube1.iaas.checkpoint.com
.web-rep.iaas.checkpoint.com
.yarkon-443.perimeter81.com
.yarkon.perimeter81.com
POPs as well
services:
https
tcp-50051
Wireguard_51821
Wireguard_8000
Wireguard_8055
UDP_1194
UDP_636
TCP_1195
TCP_8443
wireguard protocol
log
Best,
Andy
"Have a great day and if its not, change it"