
This episode covers HTTPS inspection, advanced filtering, and identity awareness in Check Point R80.
In this lesson, you’ll learn about: HTTPS inspection, advanced filtering, and identity-based security in Check Point R801. HTTPS Inspection (Deep Traffic Visibility) In Check Point R80, HTTPS traffic is encrypted → normally invisible to firewalls 🔹 The Problem Malware or attacks can hide inside: SSL/TLS encrypted traffic 🔹 The Solution: HTTPS Inspection Gateway acts as a proxy: Intercepts HTTPS traffic Decrypts it in memory Inspects content Re-encrypts and forwards 🔹 Key Requirements Enable inspection policy Install and trust certificates on client devices 🔹 Verification Use SmartConsole logs Confirm sessions are being inspected 👉 This is critical for detecting: Hidden malware Encrypted attacks 2. Advanced Filtering Actions🔹 Category-Based Filtering Control access based on: Website categories Application types 🔹 Examples Allow: Search engines Restrict: Social media Gambling Malicious sites 3. Interactive Policy Actions🔹 “Ask” Action User sees a warning page Must accept policy to continue 🔹 “Inform” Action User is notified Traffic still allowed 🔹 Why Use Them Enforce company policy Educate users Avoid full blocking 👉 Balance between security and usability4. Identity…
Organizations: Check Point, Active Directory
Products: CCSA R80, SmartConsole, SSL/TLS
Explore listener stats, chart rankings, contacts and more on the CyberCode Academy podcast page.