<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Threat Emulation Quota Exceed in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/47842#M13750</link>
    <description>Hello, if the emulation stops. what happen with the mails: CP dropped it, CP allow it without inspection, CP enqueued it and then release?</description>
    <pubDate>Tue, 19 Mar 2019 23:20:27 GMT</pubDate>
    <dc:creator>Enrique_Mejia</dc:creator>
    <dc:date>2019-03-19T23:20:27Z</dc:date>
    <item>
      <title>Threat Emulation Quota Exceed</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/29500#M13745</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Checkpoint is showing that the quota has been exceeded at start up of the smartdashboard. What does that really mean? Does CP stop to emulated the file after it exceeded the file limit? CP has used the quota term in the documentation but not mention the exact quota we get with NGTX license. My concern is, what will CP do when the quota get exceeded ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Sagar Manandhar&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 25 Sep 2018 07:51:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/29500#M13745</guid>
      <dc:creator>Sagar_Manandhar</dc:creator>
      <dc:date>2018-09-25T07:51:53Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Emulation Quota Exceed</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/29501#M13746</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As far as I know the emulation stops once you exceed the quota.&lt;/P&gt;&lt;P&gt;You can verify your quota ...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P lang="en-US" style="margin: 0in; font-family: Calibri; font-size: 11.0pt;"&gt;=&amp;gt; within the Threat Emulation tab of the gateway overview within SmartConsole&lt;/P&gt;&lt;P lang="en-US" style="margin: 0in; font-family: Calibri; font-size: 11.0pt;"&gt;=&amp;gt; via the Threat Emulation command line (TECLI): "tecli show cloud quota"&lt;/P&gt;&lt;P lang="en-US" style="margin: 0in; font-family: Calibri; font-size: 11.0pt;"&gt;=&amp;gt; within the Check Point UserCenter&lt;/P&gt;&lt;P lang="en-US" style="margin: 0in; font-family: Calibri; font-size: 11.0pt;"&gt;&lt;/P&gt;&lt;P lang="en-US" style="margin: 0in; font-family: Calibri; font-size: 11.0pt;"&gt;The quota exists to save yourself and the Check Point Cloud, so that if you should be under attack, that you do not "waste" all of your emulations in a short time (which is unusual for normal use cases).&lt;/P&gt;&lt;P lang="en-US" style="margin: 0in; font-family: Calibri; font-size: 11.0pt;"&gt;&lt;/P&gt;&lt;P lang="en-US" style="margin: 0in; font-family: Calibri; font-size: 11.0pt;"&gt;&lt;IMG __jive_id="70872" class="image-1 jive-image" height="197" src="https://community.checkpoint.com/legacyfs/online/checkpoint/70872_pastedImage_1.png" width="416" /&gt;&lt;/P&gt;&lt;P lang="en-US" style="margin: 0in; font-family: Calibri; font-size: 11.0pt;"&gt;&lt;/P&gt;&lt;P lang="en-US" style="margin: 0in; font-family: Calibri; font-size: 11.0pt;"&gt;There is also the sizing tool available which lets you see how many emulations would be required for your environment.&lt;/P&gt;&lt;P lang="en-US" style="margin: 0in; font-family: Calibri; font-size: 11.0pt;"&gt;More details regarding this can be picked up at SK93598.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 25 Sep 2018 08:57:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/29501#M13746</guid>
      <dc:creator>Maik</dc:creator>
      <dc:date>2018-09-25T08:57:42Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Emulation Quota Exceed</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/29502#M13747</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Even though&amp;nbsp;we get the message that the quota has been exceed we can see the log of file being emulated . Is this the normal behavior and the number of file also increase exceeding the quota (eg: 26000 out of 25000 has been emulated) when seen in smart view monitor.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 25 Sep 2018 15:59:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/29502#M13747</guid>
      <dc:creator>Sagar_Manandhar</dc:creator>
      <dc:date>2018-09-25T15:59:05Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Emulation Quota Exceed</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/29503#M13748</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I believe at a certain percentage above your licensed quota, it will stop emulating.&lt;/P&gt;&lt;P&gt;Offhand, I don't recall what the "hard" limit is.&lt;/P&gt;&lt;P&gt;If you see this error frequently, it may be time to have a chat with your local office, though.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 26 Sep 2018 01:59:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/29503#M13748</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-09-26T01:59:46Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Emulation Quota Exceed</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/29504#M13749</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Or carefully considere if everything you emulate now has to be emulated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Having said that we still have a hard time getting the Windows Updates from being emulated.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 27 Sep 2018 10:58:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/29504#M13749</guid>
      <dc:creator>Hugo_vd_Kooij</dc:creator>
      <dc:date>2018-09-27T10:58:38Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Emulation Quota Exceed</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/47842#M13750</link>
      <description>Hello, if the emulation stops. what happen with the mails: CP dropped it, CP allow it without inspection, CP enqueued it and then release?</description>
      <pubDate>Tue, 19 Mar 2019 23:20:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/47842#M13750</guid>
      <dc:creator>Enrique_Mejia</dc:creator>
      <dc:date>2019-03-19T23:20:27Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Emulation Quota Exceed</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/47845#M13751</link>
      <description>&lt;P&gt;Emulation always "stops" once we determine a file is malicious or not &lt;span class="lia-unicode-emoji" title=":beaming_face_with_smiling_eyes:"&gt;😁&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;But I assume you mean if, for instance, we are unable to start emulation due to a system error or an invalid license. Then this setting applies.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2019-03-19 at 5.04.15 PM.png" style="width: 774px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/285i14DD9372F850B534/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2019-03-19 at 5.04.15 PM.png" alt="Screen Shot 2019-03-19 at 5.04.15 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 20 Mar 2019 00:10:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Threat-Emulation-Quota-Exceed/m-p/47845#M13751</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-03-20T00:10:35Z</dc:date>
    </item>
  </channel>
</rss>

