Administrators can now define exceptions for URL obfuscation in Click-Time Protection, allowing greater control over how rewritten links are presented for specific trusted domains.

Click-Time Protection helps protect users from malicious links by rewriting URLs and inspecting them at click time. To enhance privacy and security, rewritten links can be configured to include an obfuscated version of the original URL rather than exposing the full destination path. However, some organizations rely on automated workflows that process URLs from trusted domains and require access to the original link.

Check Point Email Security now allows administrators to define specific domains as obfuscation exceptions. When links pointing to these domains are rewritten, the full original URL is embedded within the rewritten link instead of the obfuscated version. Links pointing to all other domains continue to use URL obfuscation as configured.

This enhancement provides greater flexibility for organizations that integrate email links with internal automation platforms, ticketing systems, analytics tools, or other business processes that depend on the original URL structure. Administrators can maintain the security benefits of URL rewriting and click-time protection while ensuring that trusted workflows continue to operate without interruption.

When creating a Click-Time Protection Ignore-List, you can now select the Ignore Behavior – either not to re-write at all, or only not to obfuscate.

This feature is being gradually deployed and should become available in customer portals over the next 7 days.

You may also like