CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. Come to CPUG CON 2008 EUROPE in Switzerland on September 8th - 9th!
    Two days full of technical content for Check Point administrators in the beautiful Swiss Alps!
    We've already had our first sign-ups!
2. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 6/9, 7/14, 8/25, 10/6, 11/3, 12/8.
3. We have new forums in Portuguese and German (see below).
4. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
5. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > Content Security/Security Servers/CVP/UFP
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2 Weeks Ago
imwings imwings is offline
Junior Member
 
Join Date: 2007-12-20
Posts: 2
imwings has an average reputation (10+)
Default Filtering URL's

I've got a list of a couple of hundred websites I want to block access to. I've got the URL's and the IP addresses. I've read through the CP documentation, but I can't figure out how to do it. I've created a "resource" but how do I make it part of the firewall rules?

I'm a checkpoint newbie.

Thanks

Frank
Reply With Quote
  #2 (permalink)  
Old 2 Weeks Ago
vzxdyy vzxdyy is offline
Junior Member
 
Join Date: 2007-09-05
Posts: 2
vzxdyy has an average reputation (10+)
Default Re: Filtering URL's

Within the Smartdashboard you should be able to right click service column and there is an option for add with resource. Search through help menu within Smartdashboard or Checkpoints Secureknowledge for more information on configuring URI. I hope this helps.
Reply With Quote
  #3 (permalink)  
Old 2 Weeks Ago
imwings imwings is offline
Junior Member
 
Join Date: 2007-12-20
Posts: 2
imwings has an average reputation (10+)
Default Re: Filtering URL's

your correct- I found the add as resource.

But when I implement the rule- everything is being blocked instead of only the sites listed in the file. The resource is named FilterSites. The resource is configured to Enforce URI capabilites
Connection method Transparent
URI match Specifications type: File
Action is blank.

I imported a text file with the list of IP addresses to block with each line of the file in the format:
[IP address] /proxy

I created a rule as such:

.....Source ..............Destination............Service...... ..........Action
Inside_Addresses.... Any .............. HTTP-FilterSites ........ Reject

And right below that is the rule:

.....Source ..............Destination............Service...... ..........Action
Inside_Addresses...... Any ................... Any ............... Accept


What am I doing wrong?

Frank

Last edited by imwings : 2 Weeks Ago at 17:20.
Reply With Quote
Reply



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 21:20.


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0