<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPS Core Protections in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/222566#M42657</link>
    <description>&lt;P&gt;100% you need ips core protections, right.&lt;/P&gt;</description>
    <pubDate>Fri, 02 Aug 2024 11:40:18 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2024-08-02T11:40:18Z</dc:date>
    <item>
      <title>IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217103#M41344</link>
      <description>&lt;P&gt;&lt;SPAN&gt;IPS core protections are installed via the access policy. However, even though you don't need a threat prevention and or IPS license, you need to activate the IPS blade, correct?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Jun 2024 10:40:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217103#M41344</guid>
      <dc:creator>Luis_Miguel_Mig</dc:creator>
      <dc:date>2024-06-11T10:40:11Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217167#M41350</link>
      <description>&lt;P&gt;Not sure that's required since the entire reason they are enforced as part of Access Policy is because these protections are built into the firewall.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Jun 2024 18:26:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217167#M41350</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-06-11T18:26:32Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217170#M41351</link>
      <description>&lt;P&gt;I believe what Phoneboy said has been the case for a long time now actually.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 11 Jun 2024 18:33:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217170#M41351</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-06-11T18:33:47Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217186#M41352</link>
      <description>&lt;P&gt;I think you can do it without IPS blade. You can attach the 'optimized setting' to a gateway that has no IPS blade enabled or license. Also same goes for GEO protection.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Jun 2024 20:14:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217186#M41352</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2024-06-11T20:14:29Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217257#M41361</link>
      <description>&lt;P&gt;Where can I find the optimized setting?&lt;BR /&gt;I guess I can try with no IPS blade but the policy type linked with the gateway needs to be both types access control and threat prevention, right?&lt;/P&gt;</description>
      <pubDate>Wed, 12 Jun 2024 09:51:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217257#M41361</guid>
      <dc:creator>Luis_Miguel_Mig</dc:creator>
      <dc:date>2024-06-12T09:51:00Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217268#M41364</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26209i9B16E1214DBB3C99/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_2.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26210i86CCFAFE648AA529/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_2.png" alt="Screenshot_2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Wed, 12 Jun 2024 11:36:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217268#M41364</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-06-12T11:36:17Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217272#M41365</link>
      <description>&lt;P&gt;Oh yeah, so you don't need to enable the IPS blade but you need to configure the policy as "threat prevention" policy type.&amp;nbsp;&lt;BR /&gt;It feels a bit complex, because the policy contains all the IPS protections even though only the IPS core protections are expected to work without the IPS license. It would be nice if these 39 nine core protections were independent a bit like the inspection settings&lt;BR /&gt;Cool. Than you very much.&lt;/P&gt;</description>
      <pubDate>Wed, 12 Jun 2024 12:12:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217272#M41365</guid>
      <dc:creator>Luis_Miguel_Mig</dc:creator>
      <dc:date>2024-06-12T12:12:19Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217274#M41366</link>
      <description>&lt;P&gt;Of course mate, any time, happy to assist. By the way, keep in mind, these core protections are super basic, specially if you are NOT using ips blade, I think thats been there since long time ago.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Btw, I have really good eve-ng and Azure cp labs, so if you need me to test anything, happy to do it.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26211i6AABF2CE09313718/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Wed, 12 Jun 2024 12:19:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217274#M41366</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-06-12T12:19:37Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217275#M41367</link>
      <description>&lt;P&gt;Indeed what the_rock posted as his last screenshot&lt;/P&gt;</description>
      <pubDate>Wed, 12 Jun 2024 12:21:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217275#M41367</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2024-06-12T12:21:16Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217276#M41368</link>
      <description>&lt;P&gt;Reference link, though Im sure you had seen it already.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_ThreatPrevention_AdminGuide/Topics-TPG/IPS_Protections.htm#Editing_Core_IPS_Protections" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_ThreatPrevention_AdminGuide/Topics-TPG/IPS_Protections.htm#Editing_Core_IPS_Protections&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Jun 2024 12:22:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217276#M41368</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-06-12T12:22:51Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217277#M41369</link>
      <description>&lt;P&gt;thanks. Yeah, I was aware of that way of filtering the core protections&lt;/P&gt;</description>
      <pubDate>Wed, 12 Jun 2024 12:40:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217277#M41369</guid>
      <dc:creator>Luis_Miguel_Mig</dc:creator>
      <dc:date>2024-06-12T12:40:25Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217278#M41370</link>
      <description>&lt;P&gt;I figured you knew, since you said number 39, which is what shows there &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Jun 2024 12:43:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217278#M41370</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-06-12T12:43:02Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217283#M41371</link>
      <description>&lt;P&gt;The 39 Core Activations exist in a kind of no man's land between Access Control &amp;amp; Threat Prevention, but everything stated in this thread is correct, you don't need the IPS feature enabled to use them.&amp;nbsp; Core Activations have always been a bit confusing to deal with, and I'm happy to report that they are covered very nicely in the upcoming &lt;A href="https://training-certifications.checkpoint.com/#/courses/Threat%20Prevention%20Specialist%20R81.20%20(CTPS)" target="_blank" rel="noopener"&gt;2-day Threat Prevention Specialist course&lt;/A&gt; which should be released to Check Point ATCs worldwide later this month.&lt;/P&gt;</description>
      <pubDate>Thu, 20 Jun 2024 15:16:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217283#M41371</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2024-06-20T15:16:01Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217443#M41414</link>
      <description>&lt;P&gt;&lt;BR /&gt;Should the installation look like the file attached?&lt;BR /&gt;Threat prevention box available but not ticked.&lt;/P&gt;
&lt;DIV id="tinyMceEditor_7b49614710b0bfLuis_Miguel_Mig_2" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;DIV id="tinyMceEditor_7b49614710b0bfLuis_Miguel_Mig_0" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV id="tinyMceEditor_7b49614710b0bfLuis_Miguel_Mig_1" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jun 2024 15:08:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217443#M41414</guid>
      <dc:creator>Luis_Miguel_Mig</dc:creator>
      <dc:date>2024-06-13T15:08:23Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217452#M41418</link>
      <description>&lt;P&gt;Right you don't need Threat Prevention ticked.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jun 2024 15:32:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217452#M41418</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2024-06-13T15:32:30Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217455#M41420</link>
      <description>&lt;P&gt;All you need to remember is this...core protection will be ACTIVE, regardless if you have ips enabled. or install or not TP policy.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jun 2024 16:01:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217455#M41420</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-06-13T16:01:02Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217506#M41427</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="coreprotections_gateway.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26252i1078E301F4318F64/image-size/large?v=v2&amp;amp;px=999" role="button" title="coreprotections_gateway.jpg" alt="coreprotections_gateway.jpg" /&gt;&lt;/span&gt;But the problem is that I can't assign my gateway neither a threat prevention profile or a IPS Core Protection Profile.&lt;BR /&gt;&lt;BR /&gt;I wonder if it has something to do with an Threat Prevention Layer generated by the system&amp;nbsp; called IPS layer assigned (with 0 rules - coming from a migration from r77) and it is not used by it still exists&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="ips.JPG" style="width: 970px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26255i2FBDA9C28F494E56/image-size/large?v=v2&amp;amp;px=999" role="button" title="ips.JPG" alt="ips.JPG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Jun 2024 11:17:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217506#M41427</guid>
      <dc:creator>Luis_Miguel_Mig</dc:creator>
      <dc:date>2024-06-14T11:17:05Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217513#M41429</link>
      <description>&lt;P&gt;If you are allowed to do remote, Im sure we can figure it out quickly. Make sure policy editor looks something similar to below.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/26256i8565106DF529432D/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 14 Jun 2024 11:33:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217513#M41429</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-06-14T11:33:52Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217516#M41430</link>
      <description>&lt;P&gt;I have just enabled the IPS blade and all of the sudden I can assign the IPS core protections profile.&lt;BR /&gt;So it seems like the IPS blade needs to be enabled even though the policy installation goes through the access policy.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 14 Jun 2024 11:53:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217516#M41430</guid>
      <dc:creator>Luis_Miguel_Mig</dc:creator>
      <dc:date>2024-06-14T11:53:18Z</dc:date>
    </item>
    <item>
      <title>Re: IPS Core Protections</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217517#M41431</link>
      <description>&lt;P&gt;Thanks Andy, I managed to configured it but with IPS blade enabled on the gateway.&lt;BR /&gt;There is no way to configure it IPS blade is not enabled as far I can see&lt;/P&gt;</description>
      <pubDate>Fri, 14 Jun 2024 11:55:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IPS-Core-Protections/m-p/217517#M41431</guid>
      <dc:creator>Luis_Miguel_Mig</dc:creator>
      <dc:date>2024-06-14T11:55:03Z</dc:date>
    </item>
  </channel>
</rss>

