CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > SmartDefense
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2007-12-20
Junior Member
 
Join Date: 2007-12-19
Posts: 1
Rep Power: 0
ben.blendeman has an average reputation (10+)
Default Problems with XML/SOAP Traffic

All,

I have some serious troubles with SmartDefense(R62):

we have several servers with applications running and they need to speak with eachother. This application communication needs to pass the Checkpoint firewall and this is XML/SOAP traffic.
This is in fact HTTP traffic and this is also like this configured in my policy. The problem is that this traffic is blocked/dropped by SMartDefense (when I disable it, it works).
This is really a pain in the ass issue, because SmartView Tracker is not logging this. I can not see why it is dropped.
I have tried to create a manual http service but without success. Even checkpoint does not know the casue of this with the debugs I took and when I ask them about the logging problem they say:

yes we know SmartDefense is not always logging in a good way, but it is not a bug

Is anyone also experiencing this or have a solution? I have now 3 customers with similar SmartDefense issues and no logging!

Greetz
Ben
Reply With Quote
  #2 (permalink)  
Old 2007-12-20
Junior Member
 
Join Date: 2007-07-12
Posts: 5
Rep Power: 0
marklar has an average reputation (10+)
Default Re: Problems with XML/SOAP Traffic

Disable smartdefense, it gives nothing but problems. If you need to do HTTP content inspection put in a reverse proxy or proper web application firewall.

m.
Reply With Quote
  #3 (permalink)  
Old 2008-01-24
Junior Member
 
Join Date: 2008-01-23
Posts: 1
Rep Power: 0
arto.ra has an average reputation (10+)
Default Re: Problems with XML/SOAP Traffic

I had almost identical problem, but disabling ISN spoofing did the trick.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 11:38.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0