> Source: [sk106854](https://support.checkpoint.com/results/sk/sk106854)

# sk106854 - Policy Verification fails to find overlapping rules

| Property | Value |
|----------|-------|
| Solution ID | sk106854 |
| Date Created | 2015-07-15 |
| Last Modified | 2017-09-27 |
| Technical Level | Advanced |
| Products | Security Management Server, Multi-Domain Security Management Server |
| Versions | R82.10, R82, R81.20, R82.10, R82.x, R82.20, R82.x, R81.20, R82, R82.20 |

## Symptoms

- * After upgrade to R77.30, any service without protocol is ignored by the verification code.   

  *Example* :  
  Verification fails for rules with HTTP service (has protocol), but will not fail for SSH (without protocol), though it should  

  ![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1436959614261/policy1507150510.jpg)  

* Policy Verification error: "`Rule 1 Hides rule 2 for services http`"   

  ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk106854/error1507150518.jpg)   

* If there are overlapping rules (one rule hides another), there is no policy verification warning. Verification succeeds though it should not.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
