I'm troubleshooting a problem with users unable to log into the backblaze website. It reports an issue fetching the account however if I switch to a broadband connection it works fine!
Checking the logs I see nothing being blocked, however when I run a zdebug I see the following:
@;1564707902;[cpu_6];[fw4_2];fw_log_drop_ex: Packet proto=6 10.110.0.10:62707 -> 62.0.58.94:443 dropped by fw_handle_first_packet Reason: Anti Malware;
The first confusing thing is the destination IP appears to belong to Checkpoint.
The Threat prevention policy is set to Optimised but the IPS blade is not enabled (in fact at present only the anti-bot and anti-virus blades are enabled. (not idea I know but this is a temporary measure) Also note that HTTPS inspection is not enabled at present either)
I've tried creating a new rule for the machine in question, disabling all threat prevention, but the issue remains.
Any assistance would be appreciated!
Thanks in advance.