Security Engines - URL Reputation

URL Reputation security engine uses Check Point's ThreatCloud to detect and prevent access to malicious URLs. It allows administrators to add exceptions for domains and URLs that need to be allowed or blocked, regardless of whether they are malicious or not.

Adding a URL or Domain to Allow-List or Block-List

You can add URL Reputation exceptions (Allow-List or Block-List) from any of these:

  • From the URL Reputation Allow-List / URL Reputation Block-List page:
    1. To create an allow-list, navigate to Configuration > URL Reputation Allow-List.
    2. To create a block-list, navigate to Configuration > URL Reputation Block-List.
    3. To add exception for a domain:
      1. Select Domain.
      2. To create an allow-list, click Create Allow-List.
      3. To create a block-list, click Create Block-List.
      4. Under Domain, enter the required domain name in the domain.com format.
    4. To add exception for an exact URL:
      1. Select Exact URL.
      2. To create an allow-list, click Create Allow-List.
      3. To create a block-list, click Create Block-List.
    5. Under Exact URL, enter the required URL.
      Note - Only URLs identical to the typed exact URL will be allow-listed / block-listed.
    6. If required, enter a description for the exception under Comment, and click OK.
      Notes:
      Allow-listed URLs will not be flagged as malicious.
      Block-listed URLs will not be flagged as clean.
  • From the Microsoft Teams / Slack message profile page:
    1. Open the required message profile from the Security Events.
    2. To create an allow-list, under Security Stack, click Create Allow-List next to the malicious URL / Domain.
      or
      Click More Info and then click Create Allow-List next to the malicious URL / Domain.
    3. To create a block-list, under Security Stack, click Create Block-List next to the URL / Domain.
      or
      Click More Info and then click Create Block-List next to the URL / Domain.
    4. Select the exception type (Exact URL or Domain).
      Avanan automatically detects and shows the URL or Domain.
      Note - Only URLs identical to the typed exact URL will be allow-listed / block-listed.
    5. If required edit the URL / Domain.
    6. If required, enter a description for the exception under Comment, and click OK.
      Notes:
      Allow-listed URLs will not be flagged as malicious.
      Block-listed URLs will not be flagged as clean.