> Source: [sk185099](https://support.checkpoint.com/results/sk/sk185099)

# sk185099 - IOC Feed URLs That Contain '#' Fail Parsing

| Property | Value |
|----------|-------|
| Solution ID | sk185099 |
| Date Created | 2026-08-17 |
| Last Modified | 2026-08-28 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82 |

## Symptoms

- * Indicators of Compromise (IOC) feed entries that contain URLs with the # character are not imported successfully.  
* The affected URLs do not appear in the IOC database.  
* You can identify failed entries in:  
  `$FWDIR/external_ioc/http_custom.csv.err`

## Cause

A software defect in the IOC feed parser caused URLs containing the **#** character to be incorrectly parsed and rejected. As a result, affected indicators were written to the `.csv.err` file and were not imported into the IOC feed database.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
