On a regular basis we get emailed a list of threat indicators from the FBI and other CIBER organizations. So when there are IP's or DNS names to block, we manually add them to our firewall rules.
I "thought" I saw somewhere there is a way to have automatic feeds to these and have the firewall updated automatically. Do I recall correctly? If so, is there any documentation on how to get this setup?
I have read this:
Configuring Threat Indicators (checkpoint.com)
But that is a manual process. I am lokoing for a somewhat automatic process as possible.
Thanks for any suggestions/pointers.