<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Sharing Threat Emulation Appliance Between Two Security Gateways in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253257#M49640</link>
    <description>&lt;P&gt;Does it mean configuring SIC between them would enable&amp;nbsp;&lt;SPAN&gt;administration&amp;nbsp;from the another Management server through SmartConsole, therefore configuring TLS is sufficient to work?&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 16 Jul 2025 09:11:14 GMT</pubDate>
    <dc:creator>usukhbayar_g</dc:creator>
    <dc:date>2025-07-16T09:11:14Z</dc:date>
    <item>
      <title>Sharing Threat Emulation Appliance Between Two Security Gateways</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253255#M49638</link>
      <description>&lt;P&gt;We’re currently using a Check Point SandBlast appliance together with our Security Gateway. I’d like to know: is it possible to connect this same SandBlast appliance to another Security Gateway that’s managed by a different Management Server—&lt;STRONG&gt;without&lt;/STRONG&gt; giving that team full admin access to our SandBlast?&lt;/P&gt;&lt;P&gt;I saw in the setup guide that the other side needs to create a gateway object and define it as a "TE Appliance." I’m wondering—does doing this give them the same kind of administrative permissions over the appliance that we currently have?&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2025 08:48:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253255#M49638</guid>
      <dc:creator>usukhbayar_g</dc:creator>
      <dc:date>2025-07-16T08:48:35Z</dc:date>
    </item>
    <item>
      <title>Re: Sharing Threat Emulation Appliance Between Two Security Gateways</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253256#M49639</link>
      <description>&lt;P&gt;In&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk113599" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk113599&lt;/A&gt;&amp;nbsp;we learn that you can use the TE appliance together with a number of Harmony Endpoint Security servers, so sharing should be possible. I would suggest to contact CP TAC to learn how to configure such a deployment! It looks as if only a certificate for TLS is needed but no SIC that would enable administration tasks from SMS.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2025 09:05:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253256#M49639</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-07-16T09:05:10Z</dc:date>
    </item>
    <item>
      <title>Re: Sharing Threat Emulation Appliance Between Two Security Gateways</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253257#M49640</link>
      <description>&lt;P&gt;Does it mean configuring SIC between them would enable&amp;nbsp;&lt;SPAN&gt;administration&amp;nbsp;from the another Management server through SmartConsole, therefore configuring TLS is sufficient to work?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2025 09:11:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253257#M49640</guid>
      <dc:creator>usukhbayar_g</dc:creator>
      <dc:date>2025-07-16T09:11:14Z</dc:date>
    </item>
    <item>
      <title>Re: Sharing Threat Emulation Appliance Between Two Security Gateways</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253258#M49641</link>
      <description>&lt;P&gt;Afaik you can only establish SIC with one SMS ! With SIC established, you have access to the GW/TE appliance by using SMS CLI:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;&lt;CODE&gt;$CPDIR/bin/cprid_util -server &amp;lt;IPv4 Address of appliance&amp;gt; -verbose rexec -rcmd /bin/clish -c "show date"&lt;/CODE&gt;&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;See&lt;STRONG&gt;&lt;CODE&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk101047" target="_blank" rel="noopener"&gt;&lt;SPAN&gt;sk101047: How to manage a Security Gateway using the "cprid_util" tool&lt;/SPAN&gt;&lt;/A&gt;&lt;/CODE&gt;&lt;/STRONG&gt;&amp;nbsp;for details!&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2025 09:46:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253258#M49641</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-07-16T09:46:44Z</dc:date>
    </item>
    <item>
      <title>Re: Sharing Threat Emulation Appliance Between Two Security Gateways</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253324#M49648</link>
      <description>&lt;P&gt;Looking at&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk113599" target="_blank" rel="noopener noreferrer"&gt;sk113599&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;it's only talking about establishing connectivity with Harmony Endpoint and Harmony Browse.&lt;BR /&gt;For a Check Point gateway, I assume the appliance has to be SICed to the same management domain.&lt;BR /&gt;Not sure how this would work for an externally managed TE appliance (or if this is even supported).&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 16 Jul 2025 16:52:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253324#M49648</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-07-16T16:52:17Z</dc:date>
    </item>
    <item>
      <title>Re: Sharing Threat Emulation Appliance Between Two Security Gateways</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253356#M49651</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Personally I’m using my sandblast with a third-party vendor, as an ICAP server. Maybe someone knows if the Secure Gateways can be configured as a ICAP client?&amp;nbsp; And then the gateways could declare your sandblast as their Icap server ? It might do the trick.&lt;/P&gt;</description>
      <pubDate>Thu, 17 Jul 2025 09:55:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253356#M49651</guid>
      <dc:creator>Josh28</dc:creator>
      <dc:date>2025-07-17T09:55:32Z</dc:date>
    </item>
    <item>
      <title>Re: Sharing Threat Emulation Appliance Between Two Security Gateways</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253358#M49652</link>
      <description>&lt;P&gt;Per documentation, it is indeed possible, &lt;A href="https://sc1.checkpoint.com/documents/R82/WebAdminGuides/EN/CP_R82_ThreatPrevention_AdminGuide/Content/Topics-TPG/ICAP_Client.htm?tocpath=Custom%20Threat%20Prevention%7CICAP%7CSecurity%20Gateway%20as%20ICAP%20Client%7C_____0" target="_self"&gt;see here, for example&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 17 Jul 2025 10:24:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Sharing-Threat-Emulation-Appliance-Between-Two-Security-Gateways/m-p/253358#M49652</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2025-07-17T10:24:45Z</dc:date>
    </item>
  </channel>
</rss>

