Sign up to save your podcasts Or
May 08, 2026 Course 32 - Checkpoint CCSA R80 | Episode 8: HTTPS Inspection, URL Filtering, and Identity Awareness 21 minutes PlayIn this lesson, you’ll learn about: HTTPS inspection, advanced filtering, and identity-based security in Check Point R801. HTTPS Inspection (Deep Traffic Visibility) In Check Point R80, HTTPS traffic is encrypted → normally invisible to firewalls 🔹 The Problem Malware or attacks can hide inside: SSL/TLS encrypted traffic 🔹 The Solution: HTTPS Inspection Gateway acts as a proxy: Intercepts HTTPS traffic Decrypts it in memory Inspects content Re-encrypts and forwards 🔹 Key Requirements Enable inspection policy Install and trust certificates on client devices 🔹 Verification Use SmartConsole logs Confirm sessions are being inspected 👉 This is critical for detecting: Hidden malware Encrypted attacks 2. Advanced Filtering Actions🔹 Category-Based Filtering Control access based on: Website categories Application types 🔹 Examples Allow: Restrict: Social media Gambling Malicious sites 3. Interactive Policy Actions🔹 “Ask” Action User sees a warning page Must accept policy to continue 🔹 “Inform” Action User is notified Traffic still allowed 🔹 Why Use Them Enforce company policy Educate users Avoid full blocking 👉 Balance between security and usability4. Identity Awareness (User-Based Security)🔹 The Problem Traditional firewalls rely on: ❌ But IP ≠ real user🔹 The Solution Identity-based enforcement in Check Point R80 🔹 Identity Sources Active Directory Captive Portal Endpoint agents 🔹 Access Role Objects Combine: Users Groups Machines Networks 🔹 Example Rule Allow: User “Bob” → access internal app Deny: 👉 Much more precise than IP-based rules5. Identity-Based Logging & Visibility🔹 Benefits 🔹 Use Cases Faster troubleshooting Better auditing Stronger security investigations Key Takeaways HTTPS inspection enables deep visibility into encrypted traffic Certificates are required to avoid browser warnings “Ask” and “Inform” provide interactive enforcement Identity Awareness ties traffic to real users Access Roles enable highly granular security rules Big PictureWith these advanced features in Check Point R80, you move beyond traditional firewalls: From IP-based → identity-based security From blind encryption → full traffic inspection From rigid blocking → interactive user contro You can listen and download our episodes for free on more than 10 different platforms: https://linktr.ee/cybercode_academy ...more Share View all episodesBy CyberCode Academy May 08, 2026 Course 32 - Checkpoint CCSA R80 | Episode 8: HTTPS Inspection, URL Filtering, and Identity Awareness 21 minutes PlayIn this lesson, you’ll learn about: HTTPS inspection, advanced filtering, and identity-based security in Check Point R801. HTTPS Inspection (Deep Traffic Visibility) In Check Point R80, HTTPS traffic is encrypted → normally invisible to firewalls 🔹 The Problem Malware or attacks can hide inside: SSL/TLS encrypted traffic 🔹 The Solution: HTTPS Inspection Gateway acts as a proxy: Intercepts HTTPS traffic Decrypts it in memory Inspects content Re-encrypts and forwards 🔹 Key Requirements Enable inspection policy Install and trust certificates on client devices 🔹 Verification Use SmartConsole logs Confirm sessions are being inspected 👉 This is critical for detecting: Hidden malware Encrypted attacks 2. Advanced Filtering Actions🔹 Category-Based Filtering Control access based on: Website categories Application types 🔹 Examples Allow: Restrict: Social media Gambling Malicious sites 3. Interactive Policy Actions🔹 “Ask” Action User sees a warning page Must accept policy to continue 🔹 “Inform” Action User is notified Traffic still allowed 🔹 Why Use Them Enforce company policy Educate users Avoid full blocking 👉 Balance between security and usability4. Identity Awareness (User-Based Security)🔹 The Problem Traditional firewalls rely on: ❌ But IP ≠ real user🔹 The Solution Identity-based enforcement in Check Point R80 🔹 Identity Sources Active Directory Captive Portal Endpoint agents 🔹 Access Role Objects Combine: Users Groups Machines Networks 🔹 Example Rule Allow: User “Bob” → access internal app Deny: 👉 Much more precise than IP-based rules5. Identity-Based Logging & Visibility🔹 Benefits 🔹 Use Cases Faster troubleshooting Better auditing Stronger security investigations Key Takeaways HTTPS inspection enables deep visibility into encrypted traffic Certificates are required to avoid browser warnings “Ask” and “Inform” provide interactive enforcement Identity Awareness ties traffic to real users Access Roles enable highly granular security rules Big PictureWith these advanced features in Check Point R80, you move beyond traditional firewalls: From IP-based → identity-based security From blind encryption → full traffic inspection From rigid blocking → interactive user contro You can listen and download our episodes for free on more than 10 different platforms: https://linktr.ee/cybercode_academy ...more Company Get Help Get Podcast App Follow Us Copyright © 2025 Evolve Global Inc. All rights reserved.