- Products
- Learn
- Local User Groups
- Partners
- More
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Call For Papers
Your Expertise. Our Stage
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
Ink Dragon: A Major Nation-State Campaign
Watch HereCheckMates Go:
CheckMates Fest
Any of you guys managed to configure inbound HTTPS Inspection on R77.20?
I want to do it between two internal hosts and I seem to miserably fail to achieve it 😁
Hi,
I am guessing, that you are asking for SMB appliances.
If the device is localy managed, than it is not supported. If it is centraly managed, than it is suppored.
More details you can find on bellow link.
Regards,
Mario
Update to R80.30!
Thanx for your comments guys. I forgot to mention I am asking about centrally managed 1470 appliance. I know it is supported, I just want someone that actually did it and can confirm it works.
It works fine from external hosts to internal.
I had many issues with internal to internal inspection. It seems besides presenting the server certificate the gateway also tried to generated an outbound certificate, doing a double inspection or something like this.
Thanx Pedro, that confirms my observations. Unfortunately I have Nginx that serves few internal host so inspection before it is not possible.
INTERNET --> CPFW --> NGINX --> WEB 1 .. N
Each WEB server has its own certificate.
What about using wildcard certificates or multiple alternate names?
Not an option unfortunately. And I am not sure it is supported on SMB.
Then I guess you'll need to have NGINX in a separate network defined as EXTERNAL and do this:
INTERNET --> CPFW --> NGINX --> CPFW (SSL inspection) --> WEB 1 .. N
Yeah, that seems to be the only option for the time being. Thanx for giving that idea.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 4 | |
| 3 | |
| 3 | |
| 3 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Tue 21 Apr 2026 @ 05:00 PM (IDT)
AI Security Masters E7: How CPR Broke ChatGPT's Isolation and What It Means for YouTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 21 Apr 2026 @ 05:00 PM (IDT)
AI Security Masters E7: How CPR Broke ChatGPT's Isolation and What It Means for YouTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY