| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| Hi! We're running fw-1 R55 at the moment and I have one question. Is it at all possible, using the Firewall-1, to make a rule that prohibits our users to use external, public proxies? Thanks in advance, Tommy |
| |||
| they can run these on any port really, so it's hard to trap without blocking everything don't allow them outbound of any port, force them to use an internal proxy on port 8080 for their http connections, and make it do SSL tunneling. you shouldn't need ANY ports outbound open unless for special requirements of the user, such as SSH outbound, or FTP, etc. __________________ ///M |
![]() |
| Thread Tools | |
| Display Modes | |
| |