<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Activating NGTX (Cloud SandBox) on your gateway in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Activating-NGTX-Cloud-SandBox-on-your-gateway/m-p/5400#M14188</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I understand the purpose of this document, but as it is thought for existing customers upgrading from NGTP to NGTX, it might cause more harm than help. Customers doing this without knowledge with this document might run into the issue I described and afterwards stay with NGTP and also don't want to move on to maybe other added functionality later on!&lt;/P&gt;&lt;P&gt;So there should be at least a big warning that existing configuration has to be considered or even better a guide how to move from existing NGTP to NGTX without harmin existing configuration.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 18 Sep 2017 07:12:04 GMT</pubDate>
    <dc:creator>Norbert_Bohusch</dc:creator>
    <dc:date>2017-09-18T07:12:04Z</dc:date>
    <item>
      <title>Activating NGTX (Cloud SandBox) on your gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Activating-NGTX-Cloud-SandBox-on-your-gateway/m-p/5397#M14185</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;I would like to share with you the latest document we created.&lt;/P&gt;&lt;P&gt;The Goal of this document is to focus on enabling Threat Emulation in organizations that purchased the NGTX&lt;BR /&gt;package, but have not activated the service.&lt;BR /&gt;In this document we will recommend activating the service using Background mode in detect mode. This will provide&lt;BR /&gt;higher level of visibility, little to no change to the environment and won’t risk or effect critical business processes.&lt;BR /&gt;Traditional Signature based solutions such as: Anti-Virus and IPS focus only on known Malware and known&lt;BR /&gt;vulnerabilities. With hundreds of new forms of malware hitting every hour, how do you protect against what you&lt;BR /&gt;don’t know?&lt;BR /&gt;Check point SandBlast Zero-day solution employs Threat Emulation (SandBox) capabilities to elevate network&lt;BR /&gt;security to the next level with evasion resistant malware detection, and comprehensive protection from the most&lt;BR /&gt;dangerous attacks.&lt;BR /&gt;Threat Emulation uses Checkpoint’s proprietary and unique CPU-level inspection, stopping even the most dangerous&lt;BR /&gt;attacks before malware has an opportunity to deploy and evade detection. SandBlast Threat Emulation uses OSlevel&lt;BR /&gt;inspection to examine a broad range of file types, including executables and data files.&lt;BR /&gt;With its unique inspection capabilities, SandBlast Threat Emulation delivers the best possible catch rate for threats,&lt;BR /&gt;and is resistant to attackers’ evasion techniques.&lt;BR /&gt;The NGTX package adds Check Point’s SandBlast Zero-Day Protection capabilities to your existing check point&lt;BR /&gt;gateway. Organizations will benefit from this innovative zero-day threat sandboxing capability, within the SandBlast&lt;BR /&gt;solution.&lt;/P&gt;&lt;P&gt;Happy activation!!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 15 Aug 2017 13:35:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Activating-NGTX-Cloud-SandBox-on-your-gateway/m-p/5397#M14185</guid>
      <dc:creator>Sagy_Kratu</dc:creator>
      <dc:date>2017-08-15T13:35:56Z</dc:date>
    </item>
    <item>
      <title>Re: Activating NGTX (Cloud SandBox) on your gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Activating-NGTX-Cloud-SandBox-on-your-gateway/m-p/5398#M14186</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I see a big issue with the way the TP profile/policy should be configured in this guide.&lt;/P&gt;&lt;P&gt;A customer already using ABOT/AV in prevent mode would&amp;nbsp;disable his other rules by inserting a rule with "any" as protection-scope above his normal rules!&lt;/P&gt;&lt;P&gt;Therefore I would let the profile settings "as is" in regards to detect/prevent settings and only configure background mode there and change the "activation method" on gw/cluster-object to detect only instead of "as defined in profile".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In R80.10 it would be possible to have one TP-policy for AV/ABOT only and one for TE only and there it would be possible to follow your advices, but in R77.30 this is not possible!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 07 Sep 2017 14:34:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Activating-NGTX-Cloud-SandBox-on-your-gateway/m-p/5398#M14186</guid>
      <dc:creator>Norbert_Bohusch</dc:creator>
      <dc:date>2017-09-07T14:34:03Z</dc:date>
    </item>
    <item>
      <title>Re: Activating NGTX (Cloud SandBox) on your gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Activating-NGTX-Cloud-SandBox-on-your-gateway/m-p/5399#M14187</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the feedback&lt;/P&gt;&lt;P&gt;i have made some correction to the document&lt;/P&gt;&lt;P&gt;it is important to state that this document focuses on how to enable the Threat Emulation blade in background and detect mode, it does not take under consideration the other blades.&lt;/P&gt;&lt;P&gt;With that said Threat Emulation can and will work with the other Threat Prevention blades with he right rule set in place.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Sep 2017 05:51:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Activating-NGTX-Cloud-SandBox-on-your-gateway/m-p/5399#M14187</guid>
      <dc:creator>Sagy_Kratu</dc:creator>
      <dc:date>2017-09-18T05:51:10Z</dc:date>
    </item>
    <item>
      <title>Re: Activating NGTX (Cloud SandBox) on your gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Activating-NGTX-Cloud-SandBox-on-your-gateway/m-p/5400#M14188</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I understand the purpose of this document, but as it is thought for existing customers upgrading from NGTP to NGTX, it might cause more harm than help. Customers doing this without knowledge with this document might run into the issue I described and afterwards stay with NGTP and also don't want to move on to maybe other added functionality later on!&lt;/P&gt;&lt;P&gt;So there should be at least a big warning that existing configuration has to be considered or even better a guide how to move from existing NGTP to NGTX without harmin existing configuration.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Sep 2017 07:12:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Activating-NGTX-Cloud-SandBox-on-your-gateway/m-p/5400#M14188</guid>
      <dc:creator>Norbert_Bohusch</dc:creator>
      <dc:date>2017-09-18T07:12:04Z</dc:date>
    </item>
    <item>
      <title>Re: Activating NGTX (Cloud SandBox) on your gateway</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Activating-NGTX-Cloud-SandBox-on-your-gateway/m-p/5401#M14189</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The document states the caveats&lt;/P&gt;&lt;P&gt;Which explains what it means and the function of the document&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sagy&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Sep 2017 07:44:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Activating-NGTX-Cloud-SandBox-on-your-gateway/m-p/5401#M14189</guid>
      <dc:creator>Sagy_Kratu</dc:creator>
      <dc:date>2017-09-18T07:44:07Z</dc:date>
    </item>
  </channel>
</rss>

