<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Schedueled policy installs in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179833#M68552</link>
    <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21294"&gt;@G_W_Albrecht&lt;/a&gt;&amp;nbsp;is correct. Go to - SmartConsole &amp;gt; Security Policies &amp;gt; Threat Prevention &amp;gt; Custom Policy&amp;nbsp;&lt;/P&gt;
&lt;P&gt;At the bottom go to - Custom Policy Tools &amp;gt; Updates &amp;gt; Schedule Update.&lt;/P&gt;
&lt;P&gt;The second option allows you to configure when policy is installed following a successful update.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2023-05-03 16_51_13-IPS Scheduled Update.png" style="width: 646px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/20755i4D7B723DB091355A/image-size/large?v=v2&amp;amp;px=999" role="button" title="2023-05-03 16_51_13-IPS Scheduled Update.png" alt="2023-05-03 16_51_13-IPS Scheduled Update.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 03 May 2023 13:52:13 GMT</pubDate>
    <dc:creator>Tal_Paz-Fridman</dc:creator>
    <dc:date>2023-05-03T13:52:13Z</dc:date>
    <item>
      <title>Schedueled policy installs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179828#M68550</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am looking to find where schedueled policy installs are initiated from.&lt;/P&gt;&lt;P&gt;The reason for this is that every night i see automated threat prevention policy installs but i cannot find where they are configured.&lt;/P&gt;&lt;P&gt;Environment is R81.10 Take79 and it is an SMS.&lt;/P&gt;&lt;P&gt;There are no smart tasks configured, at least not what i can see, are they unique and only visible for each user ?&lt;/P&gt;&lt;P&gt;No other schedueled tasks are configured.&lt;/P&gt;</description>
      <pubDate>Wed, 03 May 2023 13:37:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179828#M68550</guid>
      <dc:creator>nooni</dc:creator>
      <dc:date>2023-05-03T13:37:38Z</dc:date>
    </item>
    <item>
      <title>Re: Schedueled policy installs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179831#M68551</link>
      <description>&lt;P&gt;Look for IPS Updates settings ! Scheduled Updates can end with a policy install: &lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/Content/Topics-TPG/Threat_Prevention_Scheduled_Updates_Custom.htm?Highlight=On%20successful%20IPS%20update%20on%20the%20Security%20Management%20Server%2C%20install%20policy%20on%20the%20Security%20Gateway" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/Content/Topics-TPG/Threat_Prevention_Scheduled_Updates_Custom.htm?Highlight=On%20successful%20IPS%20update%20on%20the%20Security%20Management%20Server%2C%20install%20policy%20on%20the%20Security%20Gateway&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 03 May 2023 13:51:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179831#M68551</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2023-05-03T13:51:46Z</dc:date>
    </item>
    <item>
      <title>Re: Schedueled policy installs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179833#M68552</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21294"&gt;@G_W_Albrecht&lt;/a&gt;&amp;nbsp;is correct. Go to - SmartConsole &amp;gt; Security Policies &amp;gt; Threat Prevention &amp;gt; Custom Policy&amp;nbsp;&lt;/P&gt;
&lt;P&gt;At the bottom go to - Custom Policy Tools &amp;gt; Updates &amp;gt; Schedule Update.&lt;/P&gt;
&lt;P&gt;The second option allows you to configure when policy is installed following a successful update.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2023-05-03 16_51_13-IPS Scheduled Update.png" style="width: 646px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/20755i4D7B723DB091355A/image-size/large?v=v2&amp;amp;px=999" role="button" title="2023-05-03 16_51_13-IPS Scheduled Update.png" alt="2023-05-03 16_51_13-IPS Scheduled Update.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 03 May 2023 13:52:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179833#M68552</guid>
      <dc:creator>Tal_Paz-Fridman</dc:creator>
      <dc:date>2023-05-03T13:52:13Z</dc:date>
    </item>
    <item>
      <title>Re: Schedueled policy installs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179835#M68553</link>
      <description>&lt;P&gt;Should not be necessary if gateway is configured to update IPS itself right ?&lt;/P&gt;</description>
      <pubDate>Wed, 03 May 2023 13:54:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179835#M68553</guid>
      <dc:creator>nooni</dc:creator>
      <dc:date>2023-05-03T13:54:28Z</dc:date>
    </item>
    <item>
      <title>Re: Schedueled policy installs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179840#M68554</link>
      <description>&lt;P&gt;Still needs to enabled manually.&lt;/P&gt;</description>
      <pubDate>Wed, 03 May 2023 14:17:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179840#M68554</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-05-03T14:17:25Z</dc:date>
    </item>
    <item>
      <title>Re: Schedueled policy installs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179846#M68555</link>
      <description>&lt;DIV class="page" title="Page 115"&gt;
&lt;DIV class="layoutArea"&gt;
&lt;DIV class="column"&gt;
&lt;P&gt;&lt;SPAN&gt;This is found here: &lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/Content/Topics-TPG/Threat_Prevention_Scheduled_Updates_Autonomous.htm?Highlight=Threat%20Prevention%20Scheduled%20Updates%20-%20Autonomous%20Threat%20Prevention" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/Content/Topics-TPG/Threat_Prevention_Scheduled_Updates_Autonomous.htm?Highlight=Threat%20Prevention%20Scheduled%20Updates%20-%20Autonomous%20Threat%20Prevention:&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;&lt;SPAN class="mc-variable Vars_Other.tp_cp variable"&gt;Check Point&lt;/SPAN&gt; wants the customer to be protected. When a protection update is available, &lt;SPAN class="mc-variable Vars_Other.tp_cp variable"&gt;Check Point&lt;/SPAN&gt; wants the configuration to be automatically enforced on the &lt;SPAN class="mc-variable Vars_Other.tp_gw variable"&gt;gateway&lt;/SPAN&gt;. You can configure automatic &lt;SPAN class="mc-variable Vars_Other.tp_gw variable"&gt;gateway&lt;/SPAN&gt; &lt;SPAN class="SearchHighlight SearchHighlight4"&gt;updates&lt;/SPAN&gt; for &lt;SPAN class="mc-variable Vars_BladesFeatures.tp_av variable"&gt;&lt;A class="MCTextPopup MCTextPopupHotSpot MCTextPopupHotSpot_ #text MCTextPopup_Closed" role="button" href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/Content/Topics-TPG/Threat_Prevention_Scheduled_Updates_Autonomous.htm?Highlight=Threat%20Prevention%20Scheduled%20Updates%20-%20Autonomous%20Threat%20Prevention#" data-mc-state="closed" data-aria-describedby="629c859e-95f7-4fbf-acd2-937f500685ed" target="_blank"&gt;Anti&lt;SPAN class="SearchHighlight SearchHighlight5"&gt;-&lt;/SPAN&gt;Virus&lt;/A&gt;&lt;/SPAN&gt;, &lt;SPAN class="mc-variable Vars_BladesFeatures.tp_abot variable"&gt;&lt;A class="MCTextPopup MCTextPopupHotSpot MCTextPopupHotSpot_ #text MCTextPopup_Closed" role="button" href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/Content/Topics-TPG/Threat_Prevention_Scheduled_Updates_Autonomous.htm?Highlight=Threat%20Prevention%20Scheduled%20Updates%20-%20Autonomous%20Threat%20Prevention#" data-mc-state="closed" data-aria-describedby="857a10b1-20d7-4bb9-95a4-9292599dcb2d" target="_blank"&gt;Anti&lt;SPAN class="SearchHighlight SearchHighlight5"&gt;-&lt;/SPAN&gt;Bot&lt;/A&gt;&lt;/SPAN&gt;, &lt;SPAN class="mc-variable Vars_BladesFeatures.tp_te variable"&gt;&lt;A class="MCTextPopup MCTextPopupHotSpot MCTextPopupHotSpot_ #text MCTextPopup_Closed" role="button" href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/Content/Topics-TPG/Threat_Prevention_Scheduled_Updates_Autonomous.htm?Highlight=Threat%20Prevention%20Scheduled%20Updates%20-%20Autonomous%20Threat%20Prevention#" data-mc-state="closed" data-aria-describedby="519b3a88-136d-4e02-8f6f-50482d064c9b" target="_blank"&gt;&lt;SPAN class="SearchHighlight SearchHighlight1"&gt;Threat&lt;/SPAN&gt; Emulation&amp;nbsp;&lt;/A&gt;&lt;/SPAN&gt;and &lt;SPAN class="mc-variable Vars_BladesFeatures.tp_ips variable"&gt;&lt;A class="MCTextPopup MCTextPopupHotSpot MCTextPopupHotSpot_ #text MCTextPopup_Closed" role="button" href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/Content/Topics-TPG/Threat_Prevention_Scheduled_Updates_Autonomous.htm?Highlight=Threat%20Prevention%20Scheduled%20Updates%20-%20Autonomous%20Threat%20Prevention#" data-mc-state="closed" data-aria-describedby="a1a21aee-0aca-423c-ada5-8b071d8453ba" target="_blank"&gt;IPS&lt;/A&gt;&lt;/SPAN&gt;.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;For &lt;SPAN class="mc-variable Vars_BladesFeatures.tp_av variable"&gt;Anti&lt;SPAN class="SearchHighlight SearchHighlight5"&gt;-&lt;/SPAN&gt;Virus&lt;/SPAN&gt;, &lt;SPAN class="mc-variable Vars_BladesFeatures.tp_abot variable"&gt;Anti&lt;SPAN class="SearchHighlight SearchHighlight5"&gt;-&lt;/SPAN&gt;&lt;A class="MCTextPopup MCTextPopupHotSpot MCTextPopupHotSpot_ #text MCTextPopup_Closed" role="button" href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/Content/Topics-TPG/Threat_Prevention_Scheduled_Updates_Autonomous.htm?Highlight=Threat%20Prevention%20Scheduled%20Updates%20-%20Autonomous%20Threat%20Prevention#" data-mc-state="closed" data-aria-describedby="1f25c2a6-722a-429a-9d3a-b31e005475f1" target="_blank"&gt;Bot&amp;nbsp;&lt;/A&gt;&lt;/SPAN&gt;and &lt;SPAN class="mc-variable Vars_BladesFeatures.tp_te variable"&gt;&lt;SPAN class="SearchHighlight SearchHighlight1"&gt;Threat&lt;/SPAN&gt; Emulation&lt;/SPAN&gt;, the &lt;SPAN class="mc-variable Vars_Other.tp_gws variable"&gt;gateways&lt;/SPAN&gt; download the &lt;SPAN class="SearchHighlight SearchHighlight4"&gt;updates&lt;/SPAN&gt; directly from the &lt;SPAN class="mc-variable Vars_Other.tp_cp variable"&gt;Check Point&lt;/SPAN&gt; cloud.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;For &lt;SPAN class="mc-variable Vars_BladesFeatures.tp_ips variable"&gt;IPS&lt;/SPAN&gt;, prior to &lt;SPAN class="mc-variable Vars_Versions.r_halo variable"&gt;R80.20&lt;/SPAN&gt;, the &lt;SPAN class="SearchHighlight SearchHighlight4"&gt;updates&lt;/SPAN&gt; were downloaded to the &lt;SPAN class="mc-variable Vars_Other.tp_sms variable"&gt;&lt;A class="MCTextPopup MCTextPopupHotSpot MCTextPopupHotSpot_ #text MCTextPopup_Closed" role="button" href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/Content/Topics-TPG/Threat_Prevention_Scheduled_Updates_Autonomous.htm?Highlight=Threat%20Prevention%20Scheduled%20Updates%20-%20Autonomous%20Threat%20Prevention#" data-mc-state="closed" data-aria-describedby="aee39171-83d8-4cd5-9276-3f56e522ecbb" target="_blank"&gt;Security Management Server&lt;/A&gt;&lt;/SPAN&gt;, and only after you installed policy, the &lt;SPAN class="mc-variable Vars_Other.tp_gws variable"&gt;gateways&lt;/SPAN&gt; could enforce the &lt;SPAN class="SearchHighlight SearchHighlight4"&gt;updates&lt;/SPAN&gt;. Starting from &lt;SPAN class="mc-variable Vars_Versions.r_halo variable"&gt;R80.20&lt;/SPAN&gt;, the &lt;SPAN class="mc-variable Vars_Other.tp_gws variable"&gt;gateways&lt;/SPAN&gt; can directly download the &lt;SPAN class="SearchHighlight SearchHighlight4"&gt;updates&lt;/SPAN&gt;. For &lt;SPAN class="mc-variable Vars_Versions.r_halo variable"&gt;R80.20&lt;/SPAN&gt; &lt;SPAN class="mc-variable Vars_Other.tp_gws variable"&gt;gateways&lt;/SPAN&gt; and higher with no internet connectivity, you must still install policy to enforce the &lt;SPAN class="SearchHighlight SearchHighlight4"&gt;updates&lt;/SPAN&gt;.&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;When you configure automatic &lt;SPAN class="mc-variable Vars_BladesFeatures.tp_ips variable"&gt;IPS&lt;/SPAN&gt; &lt;SPAN class="SearchHighlight SearchHighlight4"&gt;updates&lt;/SPAN&gt; on the &lt;SPAN class="mc-variable Vars_Other.tp_gw variable"&gt;gateway&lt;/SPAN&gt;, the action for the newly downloaded protections is by default according to the profile settings.&lt;/EM&gt;&lt;/P&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Wed, 03 May 2023 14:55:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179846#M68555</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2023-05-03T14:55:25Z</dc:date>
    </item>
    <item>
      <title>Re: Schedueled policy installs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179848#M68556</link>
      <description>&lt;P&gt;Not sure if that is correct any longer:&lt;/P&gt;&lt;P&gt;"For IPS, prior to R80.20, the updates were downloaded to the Management server, and only after you installed policy, the gateways could enforce the updates. Starting from R80.20, the gateways can directly download the updates. For R80.20 gateways and higher with no internet connectivity, you must still install policy to enforce the updates"&lt;/P&gt;&lt;P&gt;Please correct me if am wrong but if gateway HAS internet access then this scheduled install is not needed according to above text from documentation.&lt;/P&gt;</description>
      <pubDate>Wed, 03 May 2023 14:50:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179848#M68556</guid>
      <dc:creator>nooni</dc:creator>
      <dc:date>2023-05-03T14:50:20Z</dc:date>
    </item>
    <item>
      <title>Re: Schedueled policy installs</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179859#M68557</link>
      <description>&lt;P&gt;If the GW is configured to install Updates and has internet access, scheduled policy install is not necessary. You will only need a policy install when changing IPS protection settings.&lt;/P&gt;</description>
      <pubDate>Wed, 03 May 2023 14:59:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Schedueled-policy-installs/m-p/179859#M68557</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2023-05-03T14:59:54Z</dc:date>
    </item>
  </channel>
</rss>

