> Source: [sk44435](https://support.checkpoint.com/results/sk/sk44435)

# sk44435 - Web traffic through SSL VPN / Mobile Access Gateway is blocked by Web Intelligence Protections regardless of the IPS Blade configuration

| Property | Value |
|----------|-------|
| Solution ID | sk44435 |
| Date Created | 2010-03-22 |
| Last Modified | 2025-10-19 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82, R81.20, R81.10 (EOS), R81 (EOS) |
| OS | Gaia |

## Symptoms

- Some Web traffic that was allowed by default in Mobile Access Blade versions prior to R71 is blocked by Web Intelligence protections on Mobile Access Gateway version R71 and above. This can happen even when the IPS Blade is disabled on the Mobile Access Gateway, or even if the IPS configuration allows such traffic.

## Cause

In versions prior to R71, Connectra used to be a StandAlone appliance, situated inside the organization's network, behind a Security Gateway.

As such, the Web Intelligence's default configuration could be relatively permissive to allow for more connectivity.

Starting in R71, SSL VPN Blade / Mobile Access Blade is an integral part of a Security Gateway, and therefore might be situated on the perimeter.

As such, it needs specific protections to protect SSL VPN aspects of the Security Gateway itself, even if IPS Blade is not enabled on the machine. In order to protect itself, the SSL VPN Blade / Mobile Access Blade uses by default a local profile configuration, which, unlike in prior versions, is configured to be restrictive.

Due to this local restrictive profile, SSL VPN Blade / Mobile Access Blade might block Web traffic that used to be allowed in prior versions.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
