- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
These devices allow you to lock down admin access via the internet to specific IP addresses. The problem is, my IP address is DHCP from the ISP, so can change occasionally. In the security policy I have used a domain object pointing to my domain so the name is resolved from DNS, which is kept up to date automatically by a little docker container, which all works fine. However, the admin access only allows you to add IP addresses, not names that could be resolved.
Has anyone else had this problem and found a way round it at all?
I think there is no way around it. You can only fill in hosts IP's and network ranges.
As workaround you could manage the firewall via VPN client. With VPN client you will get an IP from the pool. This pool you can add as VPN range in the access list:
To set the interface sources from which administrator access is allowed
Select one or more of these options:
LAN - All internal physical ports
Trusted wireless - Wireless networks that are allowed access to the LAN by default (only in Wireless Network models.)
VPN - Uses encrypted traffic through VPN tunnels from a remote site or uses a remote access client
Internet - Clear traffic from the Internet (not recommended to allow access from all IP addresses)
As DNS queries can be changed by a man-in-the-midddle, we only allow fixed IPs to be configured for admin access.
I think there is no way around it. You can only fill in hosts IP's and network ranges.
As workaround you could manage the firewall via VPN client. With VPN client you will get an IP from the pool. This pool you can add as VPN range in the access list:
To set the interface sources from which administrator access is allowed
Select one or more of these options:
LAN - All internal physical ports
Trusted wireless - Wireless networks that are allowed access to the LAN by default (only in Wireless Network models.)
VPN - Uses encrypted traffic through VPN tunnels from a remote site or uses a remote access client
Internet - Clear traffic from the Internet (not recommended to allow access from all IP addresses)
Interesting work around thanks!
As DNS queries can be changed by a man-in-the-midddle, we only allow fixed IPs to be configured for admin access.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 5 | |
| 2 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY