<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Avoid Initial Policy - &amp;quot;Zero Touch&amp;quot; Deployment in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Avoid-Initial-Policy-quot-Zero-Touch-quot-Deployment/m-p/211877#M40191</link>
    <description>&lt;P&gt;We always prepare the GWs in our HQ before sending them out to the Sites. Including all Gaia Settings, established SIC and correct policy installed. Last thing before shipping is to change the WAN IP and default Route in Gaia and change the Main IP also in the Management. Only thing to do When it gets connected at the Site is to install the policy again to „activate“ the new WAN IP.&lt;/P&gt;</description>
    <pubDate>Fri, 19 Apr 2024 21:34:14 GMT</pubDate>
    <dc:creator>D_W</dc:creator>
    <dc:date>2024-04-19T21:34:14Z</dc:date>
    <item>
      <title>Avoid Initial Policy - "Zero Touch" Deployment</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Avoid-Initial-Policy-quot-Zero-Touch-quot-Deployment/m-p/211860#M40189</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;
&lt;P&gt;sometimes it happens that we need to configure FWs and then sent to Datacenter/branch offices.&lt;/P&gt;
&lt;P&gt;At startup FWs load Initial Policy, so we cannot connect from MPLS or Internet. Every time console access is needed to perform fw unloadlocal.&lt;/P&gt;
&lt;P&gt;Any workaround?&lt;/P&gt;</description>
      <pubDate>Fri, 19 Apr 2024 14:36:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Avoid-Initial-Policy-quot-Zero-Touch-quot-Deployment/m-p/211860#M40189</guid>
      <dc:creator>CheckPointerXL</dc:creator>
      <dc:date>2024-04-19T14:36:37Z</dc:date>
    </item>
    <item>
      <title>Re: Avoid Initial Policy - "Zero Touch" Deployment</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Avoid-Initial-Policy-quot-Zero-Touch-quot-Deployment/m-p/211871#M40190</link>
      <description>&lt;P&gt;You can customize the default filter policy:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_NextGenSecurityGateway_Guide/Topics-FWG/Boot-Security.htm?tocpath=Security%20Before%20Firewall%20Activation%7C_____1#" target="_blank"&gt;Boot Security (checkpoint.com)&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Apr 2024 18:47:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Avoid-Initial-Policy-quot-Zero-Touch-quot-Deployment/m-p/211871#M40190</guid>
      <dc:creator>Lloyd_Braun</dc:creator>
      <dc:date>2024-04-19T18:47:02Z</dc:date>
    </item>
    <item>
      <title>Re: Avoid Initial Policy - "Zero Touch" Deployment</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Avoid-Initial-Policy-quot-Zero-Touch-quot-Deployment/m-p/211877#M40191</link>
      <description>&lt;P&gt;We always prepare the GWs in our HQ before sending them out to the Sites. Including all Gaia Settings, established SIC and correct policy installed. Last thing before shipping is to change the WAN IP and default Route in Gaia and change the Main IP also in the Management. Only thing to do When it gets connected at the Site is to install the policy again to „activate“ the new WAN IP.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Apr 2024 21:34:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Avoid-Initial-Policy-quot-Zero-Touch-quot-Deployment/m-p/211877#M40191</guid>
      <dc:creator>D_W</dc:creator>
      <dc:date>2024-04-19T21:34:14Z</dc:date>
    </item>
    <item>
      <title>Re: Avoid Initial Policy - "Zero Touch" Deployment</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Avoid-Initial-Policy-quot-Zero-Touch-quot-Deployment/m-p/211878#M40192</link>
      <description>&lt;P&gt;Good to know that this is also possible. &lt;span class="lia-unicode-emoji" title=":thumbs_up:"&gt;👍&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Apr 2024 21:35:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Avoid-Initial-Policy-quot-Zero-Touch-quot-Deployment/m-p/211878#M40192</guid>
      <dc:creator>D_W</dc:creator>
      <dc:date>2024-04-19T21:35:06Z</dc:date>
    </item>
    <item>
      <title>Re: Avoid Initial Policy - "Zero Touch" Deployment</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Avoid-Initial-Policy-quot-Zero-Touch-quot-Deployment/m-p/211880#M40193</link>
      <description>&lt;P&gt;You realize we have a Zero Touch service that can assist with this:? &lt;A href="https://sc1.checkpoint.com/documents/SMB_R80.20.15/AdminGuides/Locally_Managed/EN/Topics/Zero-Touch-Cloud-Service.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/SMB_R80.20.15/AdminGuides/Locally_Managed/EN/Topics/Zero-Touch-Cloud-Service.htm&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;See also: &lt;A href="https://welcome.checkpoint.com" target="_blank"&gt;https://welcome.checkpoint.com&lt;/A&gt;&amp;nbsp;(production) or &lt;A href="https://welcome-stg.checkpoint.com" target="_blank"&gt;https://welcome-stg.checkpoint.com&lt;/A&gt;&amp;nbsp;(Staging) which offers another mechanism to onboard appliances.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Apr 2024 22:06:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Avoid-Initial-Policy-quot-Zero-Touch-quot-Deployment/m-p/211880#M40193</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-04-19T22:06:38Z</dc:date>
    </item>
  </channel>
</rss>

