- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- SSH Deep Packet Inspection
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
SSH Deep Packet Inspection
Hello,
We're planning to implement SSH Deep Packet Inspection for the incoming traffic as mentioned here.
We've multiple servers allowing SSH incoming traffic from the Internet to DMZ.
1. Can you pls let me know how to implement this for any test connection, instead of globally for all servers?
2. Just by identifying the SSH-tunnelling, does it going to automatically drop it or any rules required?
2 Replies
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Your linked Admin Guide shows how to Add an inspected SSH server - repeat for multiple servers. Current rules should work as before, added SSH servers are are inspected.
CCSP - CCSE / CCTE / CTPS / CCME / CCSM Elite / SMB Specialist
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi! Did you manage to implement ssh inspection?
