- Products
- Learn
- Local User Groups
- Partners
- More
CheckMates Fifth Birthday
Celebrate with Us!
days
hours
minutes
seconds
Join the CHECKMATES Everywhere Competition
Submit your picture to win!
Check Point Proactive support
Free trial available for 90 Days!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
The 2022 MITRE Engenuity ATT&CK®
Evaluations Results Are In!
Now Available: SmartAwareness Security Training
Training Built to Educate and Engage
MITRE ATT&CK
Inside Check Point products!
CheckFlix!
All Videos In One Space
Hi
We have been using Zscaler for a couple of years, and recently we started to use the Zscaler Updatable Object that CheckPoint is providing.
However, I do see a lot traffic going to Zscaler "systems" worldwide that is not picked up by this rule (Certificate validation servers, PAC servers mainly).
I checked the /opt/CPshrd-R80.40/database/downloads/ONLINE_SERVICES/1.0/200122040225/zscaler.C file, and clearly there are IP ranges that are missing.
Has anybody else come across this?
How do we report back missing IP ranges to CheckPoint?
/Kenneth
Typically we monitor a list published by the entity and would update accordingly, is the Zscaler docco in order for the IP ranges in question?
If there is still a gap please report it via TAC.
For example on the Zscaler web page (https://config.zscaler.com/zscloud.net/hubs) it states you need 185.46.212.0/22.
While in the config file (zscaler.C) you have:
: (
:ip ("185.46.212.0")
:mask (23)
:type (ip_mask)
)
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY