Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
carl_t
Contributor

Application control and url filtering rules

Hi All

I have a quick question when using App control and url filtering on the firewall.

Under the application control layer, for example if I add facebook, is that all I need to do? 

Under the security blade, would I need to create a rule for the internet to anywhere on 80/443 first? or would the app rule do this for me?

cheers

0 Kudos
2 Replies
AlejandroH
Ambassador
Ambassador

What are you trying to do?  Give access to FB to only a group of people?  Block Facebook?  Remove the option for uploads?  There are a lot of options depending on what you are trying to accomplish.

Facebook apps.png

If you already have an internet outbound rule towards the internet, it then look at the App/URL blade after that accept.  So yes 80/443 would the absolute least required but as you see in screenshot, sometimes it will be other ports needed..

0 Kudos
Chris_Atkinson
Employee Employee
Employee

In an ordered layer scenario the HTTPS/HTTP traffic would need to be accepted first.

Refer also:

https://community.checkpoint.com/t5/Policy-Management/Policy-Layers-in-R80-x/td-p/1717

CCSM R77/R80/ELITE
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82
    CheckMates Events