<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to Roll Out IPS Updates Safely in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275994#M105093</link>
    <description>&lt;P&gt;All excellent points, Wili!&lt;/P&gt;</description>
    <pubDate>Thu, 23 Apr 2026 13:28:32 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2026-04-23T13:28:32Z</dc:date>
    <item>
      <title>How to Roll Out IPS Updates Safely</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275694#M105005</link>
      <description>&lt;H1&gt;How to Roll Out IPS Updates Safely&lt;/H1&gt;
&lt;H2&gt;Staging → Evidence → Promotion (Prevent) without production surprises&lt;/H2&gt;
&lt;H3&gt;Why this matters (real-world pain)&lt;/H3&gt;
&lt;P&gt;IPS content updates are frequent and necessary — but the operational risk is &lt;STRONG&gt;not the download&lt;/STRONG&gt;. The risk is &lt;STRONG&gt;new/updated protections going straight to Prevent&lt;/STRONG&gt; without evidence, which is how you get:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;false positives that break business apps,&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;emergency exceptions (often global),&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;and “IPS caused an outage” narratives.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;This post outlines a &lt;STRONG&gt;repeatable, low-risk workflow&lt;/STRONG&gt; to adopt IPS updates with discipline: &lt;STRONG&gt;stage first, validate with evidence, then promote.&lt;/STRONG&gt;&lt;/P&gt;
&lt;H2&gt;&amp;nbsp;&lt;/H2&gt;
&lt;H2&gt;1) TAC mental model: Update vs Enforcement&lt;/H2&gt;
&lt;P&gt;&lt;STRONG&gt;IPS update ≠ enforcement.&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;IPS content update&lt;/STRONG&gt; makes new/updated protections available in management.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;Threat Prevention Policy install&lt;/STRONG&gt; is what actually enforces changes on gateways.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;TAC principle: &lt;STRONG&gt;Download is not risk. Policy install + Prevent is risk.&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H2&gt;2) The single most important control: Stage newly updated protections&lt;/H2&gt;
&lt;P&gt;Your goal is to ensure &lt;STRONG&gt;new and newly updated protections&lt;/STRONG&gt; enter a &lt;EM&gt;review state&lt;/EM&gt; (typically &lt;STRONG&gt;Detect / staging / Follow Up&lt;/STRONG&gt;) before you ever promote them to Prevent.&lt;/P&gt;
&lt;H3&gt;Where to configure (SmartConsole)&lt;/H3&gt;
&lt;P&gt;&lt;STRONG&gt;Path :&amp;nbsp;&lt;/STRONG&gt;SmartConsole → &lt;STRONG&gt;Security Policies&lt;/STRONG&gt; → &lt;STRONG&gt;Threat Prevention&lt;/STRONG&gt; → &lt;STRONG&gt;Profiles&lt;/STRONG&gt; → → &lt;STRONG&gt;IPS&lt;/STRONG&gt; → &lt;STRONG&gt;Updates&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;[PRINT] Profile → IPS → Updates (Newly Updated Protections / Staging / Follow Up setting)&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ips print 1.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/34041iBA8A50F81AA141F5/image-size/large?v=v2&amp;amp;px=999" role="button" title="ips print 1.png" alt="ips print 1.png" /&gt;&lt;/span&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;What to explain next to the screenshot (2 lines):&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;This setting defines how &lt;STRONG&gt;newly introduced/updated IPS protections&lt;/STRONG&gt; behave by default.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;TAC best practice: &lt;STRONG&gt;stage in Detect first&lt;/STRONG&gt;, then promote based on evidence.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;H2&gt;&amp;nbsp;&lt;/H2&gt;
&lt;H2&gt;3) Controlled rollout: Rings (blast-radius management)&lt;/H2&gt;
&lt;P&gt;Don’t apply IPS changes everywhere at once.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Recommended rings:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;Ring 0 (pilot):&lt;/STRONG&gt; one non-critical gateway or a controlled site&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;Ring 1:&lt;/STRONG&gt; secondary perimeter / lower risk segment&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;Ring 2:&lt;/STRONG&gt; broad production&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Go/No-Go criteria to advance:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;no critical app outages&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;no spike in false positives&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;gateway performance stable (CPU/throughput/drops)&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;H2&gt;&amp;nbsp;&lt;/H2&gt;
&lt;H2&gt;4) Operational workflow&amp;nbsp;&lt;/H2&gt;
&lt;H3&gt;Step A — Update IPS content in Management&lt;/H3&gt;
&lt;P&gt;Use your standard process (scheduled/manual) to fetch the IPS content update.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Key point:&lt;/STRONG&gt; at this stage, you’re updating content availability — not enforcing yet.&lt;/P&gt;
&lt;H3&gt;Step B — Install Threat Prevention policy to Ring 0 (controlled)&lt;/H3&gt;
&lt;P&gt;&lt;STRONG&gt;Path:&lt;/STRONG&gt;&lt;BR /&gt;SmartConsole → &lt;STRONG&gt;Install Policy&lt;/STRONG&gt; → select &lt;STRONG&gt;Threat Prevention Policy&lt;/STRONG&gt; → choose Ring 0 gateways&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ips print 2.png" style="width: 973px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/34046i9CEEFD7536C52299/image-size/large?v=v2&amp;amp;px=999" role="button" title="ips print 2.png" alt="ips print 2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;[PRINT] Install Policy dialog highlighting Threat Prevention + Ring 0 selection&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;TAC note:&lt;/STRONG&gt; enforcing the policy in a pilot ring lets you observe real traffic impact safely.&lt;/P&gt;
&lt;H3&gt;Step C — Evidence window (Detect/staging observation)&lt;/H3&gt;
&lt;P&gt;Define a standard observation window:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;7 days&lt;/STRONG&gt; for internet edge (usually faster signal)&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;10–14 days&lt;/STRONG&gt; for internal/DC (more complex baselines)&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;What you must review during the window:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;top triggered “newly updated” protections&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;business apps impacted at matching timestamps&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;recurrence patterns (one host vs many)&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;severity/confidence relevance (where applicable)&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;Path (logs):&amp;nbsp;&lt;/STRONG&gt;SmartConsole → &lt;STRONG&gt;Logs &amp;amp; Monitor&lt;/STRONG&gt; → &lt;STRONG&gt;SmartLog&lt;/STRONG&gt; (filter for IPS / Threat Prevention)&lt;BR /&gt;&lt;STRONG&gt;[PRINT] SmartLog filter showing IPS events for Ring 0 window&lt;/STRONG&gt;&lt;/P&gt;
&lt;H2&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ips print 3.png" style="width: 796px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/34047i9FBBE4FE6FE1E9E1/image-size/large?v=v2&amp;amp;px=999" role="button" title="ips print 3.png" alt="ips print 3.png" /&gt;&lt;/span&gt;&lt;/H2&gt;
&lt;H2&gt;5) Promote safely: Detect → Prevent (only what is proven)&lt;/H2&gt;
&lt;P&gt;Once you have evidence a protection is safe and relevant, promote it from Detect to Prevent.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Path (protections view):&lt;/STRONG&gt;&lt;BR /&gt;SmartConsole → &lt;STRONG&gt;Threat Prevention&lt;/STRONG&gt; → &lt;STRONG&gt;Protections&lt;/STRONG&gt; → &lt;STRONG&gt;IPS Protections&lt;/STRONG&gt;&lt;BR /&gt;Filter: &lt;STRONG&gt;Follow Up / Newly Updated&lt;/STRONG&gt; (or equivalent view for your version)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Promotion decision rule (practical):&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;Promote protections that are &lt;STRONG&gt;relevant&lt;/STRONG&gt; and have &lt;STRONG&gt;no confirmed FP&lt;/STRONG&gt; in your environment.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Keep in Detect if evidence is insufficient.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;If FP occurs, prefer &lt;STRONG&gt;granular exceptions&lt;/STRONG&gt; over global disable.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;H2&gt;&amp;nbsp;&lt;/H2&gt;
&lt;H2&gt;6) Exceptions governance (avoid permanent risk debt)&lt;/H2&gt;
&lt;P&gt;The classic failure mode is “disable globally” or “global exception forever.”&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Every exception must include:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;Scope:&lt;/STRONG&gt; specific host/group/network/app (never global by default)&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;Justification:&lt;/STRONG&gt; business need + risk acceptance&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;Owner:&lt;/STRONG&gt; who approved&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;Expiry/review date:&lt;/STRONG&gt; enforce cleanup&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;&lt;STRONG&gt;Evidence:&lt;/STRONG&gt; log excerpt + timestamp + reproduction steps&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;TAC principle: &lt;STRONG&gt;exceptions without expiry become attack surface.&lt;/STRONG&gt;&lt;/P&gt;
&lt;H2&gt;&amp;nbsp;&lt;/H2&gt;
&lt;H2&gt;7) Fast triage (10–15 minutes) when someone says “IPS broke it”&lt;/H2&gt;
&lt;OL&gt;
&lt;LI&gt;
&lt;P&gt;Capture &lt;STRONG&gt;exact timestamp&lt;/STRONG&gt; of the failure.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;In SmartLog, filter IPS events in that time window.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Identify the &lt;STRONG&gt;exact protection&lt;/STRONG&gt; that matched (name/ID).&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Confirm whether it was &lt;STRONG&gt;Detect vs Prevent&lt;/STRONG&gt;.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Validate reproducibility and business impact.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;If FP: implement &lt;STRONG&gt;scoped exception&lt;/STRONG&gt;, reinstall policy to Ring, re-test.&lt;/P&gt;
&lt;/LI&gt;
&lt;/OL&gt;
&lt;H2&gt;&amp;nbsp;&lt;/H2&gt;
&lt;H2&gt;8)&lt;/img&gt; Summary flow (diagram you can paste)&lt;/H2&gt;
&lt;P&gt;&lt;STRONG&gt;[PRINT] Controlled IPS update flow diagram (Step 8)&lt;/img&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;OL&gt;
&lt;LI&gt;
&lt;P&gt;IPS content update (management)&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Newly updated protections → &lt;STRONG&gt;staging/Detect&lt;/STRONG&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Install Threat Prevention policy to &lt;STRONG&gt;Ring 0&lt;/STRONG&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Observe logs + validate app impact&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Promote selected protections &lt;STRONG&gt;Detect → Prevent&lt;/STRONG&gt;&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Expand to Ring 1 → Ring 2&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;Exceptions: scoped + owner + expiry + evidence&lt;/P&gt;
&lt;/LI&gt;
&lt;/OL&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ChatGPT Image 17 de abr. de 2026, 09_31_36.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/34048i75DF0CE6173A6D36/image-size/large?v=v2&amp;amp;px=999" role="button" title="ChatGPT Image 17 de abr. de 2026, 09_31_36.png" alt="ChatGPT Image 17 de abr. de 2026, 09_31_36.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;H2&gt;Closing question (to drive community responses)&lt;/H2&gt;
&lt;P&gt;How do you handle IPS changes today?&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;
&lt;P&gt;Do you stage new protections in Detect first?&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;What’s your typical evidence window before Prevent?&lt;/P&gt;
&lt;/LI&gt;
&lt;LI&gt;
&lt;P&gt;What’s your internal SLA for reviewing “Follow Up / newly updated” protections?&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;H2 id="toc-hId--517319126"&gt;Refer oficial&lt;/H2&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;OL class="css-3yupri"&gt;
&lt;LI class="ai-chatbot-reference css-1onth16"&gt;&lt;A class="css-a3bjub" href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_ThreatPrevention_AdminGuide/Topics-TPG/Configuring-IPS-Profile-Settings.htm" rel="noopener noreferrer" target="_blank"&gt;R81 Threat Prevention Administration Guide - Configuring-IPS-Profile-Settings&lt;/A&gt;&lt;/LI&gt;
&lt;LI class="ai-chatbot-reference css-1onth16"&gt;&lt;A class="css-a3bjub" href="https://sc1.checkpoint.com/documents/R82/WebAdminGuides/EN/CP_R82_ThreatPrevention_AdminGuide/Content/Topics-TPG/Configuring-IPS-Profile-Settings.htm" rel="noopener noreferrer" target="_blank"&gt;R82 Threat Prevention Administration Guide - Configuring-IPS-Profile-Settings&lt;/A&gt;&lt;/LI&gt;
&lt;LI class="ai-chatbot-reference css-1onth16"&gt;&lt;A class="css-a3bjub" href="https://sc1.checkpoint.com/documents/R80.40/WebAdminGuides/EN/CP_R80.40_ThreatPrevention_AdminGuide/Topics-TPG/Creating_Threat_Prevention_Rules.htm" rel="noopener noreferrer" target="_blank"&gt;R80.40 Threat Prevention Administration Guide - Creating_Threat_Prevention_Rules&lt;/A&gt;&lt;/LI&gt;
&lt;LI class="ai-chatbot-reference css-1onth16"&gt;&lt;A class="css-a3bjub" href="https://sc1.checkpoint.com/documents/R82/WebAdminGuides/EN/CP_R82_ThreatPrevention_AdminGuide/Content/Topics-TPG/IPS_Protections_for_Custom_Threat_Prevention.htm" rel="noopener noreferrer" target="_blank"&gt;R82 Threat Prevention Administration Guide - IPS_Protections_for_Custom_Threat_Prevention&lt;/A&gt;&lt;/LI&gt;
&lt;/OL&gt;</description>
      <pubDate>Fri, 17 Apr 2026 13:14:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275694#M105005</guid>
      <dc:creator>WiliRGasparetto</dc:creator>
      <dc:date>2026-04-17T13:14:16Z</dc:date>
    </item>
    <item>
      <title>Re: How to Roll Out IPS Updates Safely</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275695#M105006</link>
      <description>&lt;P&gt;Cool howto - well done!&lt;/P&gt;</description>
      <pubDate>Fri, 17 Apr 2026 13:28:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275695#M105006</guid>
      <dc:creator>Vincent_Bacher</dc:creator>
      <dc:date>2026-04-17T13:28:54Z</dc:date>
    </item>
    <item>
      <title>Re: How to Roll Out IPS Updates Safely</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275713#M105013</link>
      <description>&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Sat, 18 Apr 2026 04:38:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275713#M105013</guid>
      <dc:creator>WiliRGasparetto</dc:creator>
      <dc:date>2026-04-18T04:38:20Z</dc:date>
    </item>
    <item>
      <title>Re: How to Roll Out IPS Updates Safely</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275944#M105080</link>
      <description>&lt;P&gt;very good, well done.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Apr 2026 14:39:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275944#M105080</guid>
      <dc:creator>israelfds95</dc:creator>
      <dc:date>2026-04-22T14:39:52Z</dc:date>
    </item>
    <item>
      <title>Re: How to Roll Out IPS Updates Safely</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275993#M105092</link>
      <description>&lt;P&gt;Thankyou&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/93117"&gt;@israelfds95&lt;/a&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 23 Apr 2026 13:16:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275993#M105092</guid>
      <dc:creator>WiliRGasparetto</dc:creator>
      <dc:date>2026-04-23T13:16:25Z</dc:date>
    </item>
    <item>
      <title>Re: How to Roll Out IPS Updates Safely</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275994#M105093</link>
      <description>&lt;P&gt;All excellent points, Wili!&lt;/P&gt;</description>
      <pubDate>Thu, 23 Apr 2026 13:28:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/275994#M105093</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2026-04-23T13:28:32Z</dc:date>
    </item>
    <item>
      <title>Re: How to Roll Out IPS Updates Safely</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/276434#M105205</link>
      <description>&lt;P&gt;Thank's&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/38213"&gt;@the_rock&lt;/a&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 May 2026 12:43:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-to-Roll-Out-IPS-Updates-Safely/m-p/276434#M105205</guid>
      <dc:creator>WiliRGasparetto</dc:creator>
      <dc:date>2026-05-04T12:43:40Z</dc:date>
    </item>
  </channel>
</rss>

