Dear community,
we are currently facing the challenge, that one of our employees is having a software installed which need to connect via MySQL (TCP 3306) to an external internet ressource.
Unfortunately that internet ressource has an ever-changing external IP so allowing the traffic with a static src/dest/port rule is not an option.
Looking at the log we see that our checkpoint gateway recognized the web traffic ressouce (test.domain.com in this example) to which the software is trying to connect via MySQL (see attachment).
Is there a way to allow the access based on this web ressource?
The gateway is running R80.20.40, domain objects did not work (probably since its not a http(s) traffic but SQL).
Any hint is appreciated!
Regards,
Franz