Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
the_rock
MVP Diamond
MVP Diamond

Rule needed for proper SASE access

Hey guys,

Figured would share below, as this sort of rule is needed for correct SASE access.

source:

any (or whatever source appropriate)

dst:

.api.perimeter81.com*
.cws.checkpoint.com
.fonts.googleapis.com
.p81-assets.perimeter81.com
.perimeter81.com
.sdp.perimeter81.com*
.sdpv2-agent-ws.perimeter81.com
.company.perimeter81.com (example apple.perimeter81.com, whatever sase portal shows for the link)
.te.checkpoint.com
.upgrade.bitdefender.com
.url-rep.kube1.iaas.checkpoint.com
.web-rep.iaas.checkpoint.com
.yarkon-443.perimeter81.com
.yarkon.perimeter81.com
POPs as well

services:

https
tcp-50051
Wireguard_51821
Wireguard_8000
Wireguard_8055
UDP_1194
UDP_636
TCP_1195
TCP_8443
wireguard protocol


log

Best,
Andy
6 Replies
masher
Employee
Employee

There is also an application control object that could be used as well. 

 

SmartConsole_QNULEmfnRX.png

 
 

 

 

 

 

 

(1)
the_rock
MVP Diamond
MVP Diamond

Ah yes, excellent point @masher 

Best,
Andy
0 Kudos
the_rock
MVP Diamond
MVP Diamond

I see btw that covers all those ports/services I listed...NICE!

Best,
Andy
0 Kudos
Chris_Atkinson
MVP Platinum CHKP MVP Platinum CHKP
MVP Platinum CHKP

You can find similar information here:

https://support.checkpoint.com/results/sk/sk182251

CCSM R77/R80/ELITE
the_rock
MVP Diamond
MVP Diamond

Thanks Chris!

Best,
Andy
0 Kudos
D_TK
Advisor

Is the whole whitelisting guide salient if the agent is on prem, and using the trusted network feature (with agent security disabled)?

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events