Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Abhinav_Shrivas
Participant

1470 - Policy not working working

Hi,

I have created two policies in checkpoint 1470 but it is not working properly as expected. 

The first policy is like -

source (new IP group)---Destination (server ip-121)-----services(port no.)---Allow.

and other policy is like

Source (any) ----Destination (server ip-121) -----service(any)----Block.

 

After this, I am still able to access the server IP from different IP other then group IP. Allow policyAllow policyBlock policyBlock policy

According to the above policy no one access the IP-121 from unknown IP address, but it not happening.

What could be the issue here ?

Please help.

0 Kudos
2 Replies
G_W_Albrecht
Legend Legend
Legend

It would be good to look at the log entries - which rule accepts the connection ? Are you in strict mode so only your manually defined rules are valid ?

CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist
0 Kudos
G_W_Albrecht
Legend Legend
Legend

Can we move this to SMB ? This has nothing to do with Endpoint > Endpoint Security Products ...

CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events