> Source: [sk179608](https://support.checkpoint.com/results/sk/sk179608)

# sk179608 - The Firewall blade in Endpoint Security Client drops all connections

| Property | Value |
|----------|-------|
| Solution ID | sk179608 |
| Date Created | 2022-06-29 |
| Last Modified | 2022-10-19 |
| Technical Level | General |
| Products | Endpoint Security |
| Versions | Cloud, E89.X, E88.X |
| OS | Gaia |
| Platform | Open Server |

## Symptoms

- The Firewall blade in Endpoint Security Client drops all connections.

## Cause

Empty network groups that were created in SmartConsole are used in the "Firewall" policy that is managed through the SmartEndpoint Console.

When you create an "empty" network group in SmartConsole and then in SmartEndpoint configure an outbound destination in the "Firewall" policy with an action "Block", the "Firewall" blade drops all connections.

## Solution

No fix is required.

Empty network objects are used throughout Check Point Management infrastructure by design and are considered to be valid. That is why you can create them in SmartConsole.
Introducing a special case to policy building mechanism on the server side for empty network objects creates a conflict with the general concept of using empty network objects in the Endpoint Policy Management (because they are used in other configurations, policies, and so on).  

Nevertheless, empty network objects are not designed to be used in Endpoint Security "Firewall" policy (and it is emphasized by validation rules for network objects in SmartEndpoint and Web-Management UI).  

Create the objects to use in Endpoint Security "Firewall" policy in SmartEndpoint Console or Web-Management Console.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
