<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SandBlast agent poor documentation in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19924#M3534</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;P&gt;&lt;SPAN style="background-color: #f6f6f6;"&gt;Günther W. Albrecht wrote:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the random files are in the folders you see&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If that's the case the admin guide (page 187) is both wrong about the file names and the file locations:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="68955" class="image-2 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/68955_pastedImage_3.png" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="68954" alt="" class="image-1 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/68954_Capture.PNG" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;P&gt;Günther W. Albrecht wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;but how could information on "what they are" help you in any way ?&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I assumed the documentation is correct and they were not anti-ransomware files, in that case yes I want to know and the client will ask what are these files in their My Documents.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;P&gt;Günther W. Albrecht wrote:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you need these answer to make customer(s) happy, you can always involve TAC and ask for information.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't see how "opening a ticket to understand their product" is a good documentation strategy for CheckPoint.&lt;/P&gt;&lt;P&gt;The main thing for me is that on Gateway side the documentation is usually quite good so I would just expect the same level for Endpoints.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 17 Aug 2018 12:52:04 GMT</pubDate>
    <dc:creator>18568</dc:creator>
    <dc:date>2018-08-17T12:52:04Z</dc:date>
    <item>
      <title>SandBlast agent poor documentation</title>
      <link>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19921#M3531</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I worked with Checkpoint security gateways for quite a few years and the technical documentation is usually quite complete (especially thanks to the ATRG pages), however I recently started setting up Sandblast agents for a client and I find the documentation very lacking, it is mostly a "black box" and the documentation tells you it will protect against this threat but without any technical details on how it will do it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For example if I take the anti-ransomware feature I cannot find the following information:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;How does the agent decides which file to backup&lt;/LI&gt;&lt;LI&gt;Are the files backed up when accessed by a process (does that mean the process have to wait the backup is completed before running) or is the agent actively looking for these files (and if so how - only local or also remote on file servers?)&lt;/LI&gt;&lt;LI&gt;How long is each file kept in the backup&lt;/LI&gt;&lt;LI&gt;I can configure a backup size limit in the Endpoint Management but what happens when the client reaches the limit (I assume some files will be deleted, but which one)&lt;/LI&gt;&lt;LI&gt;I see in the documentation that the agent is supposed to create some random files in My Documents, etc. I cannot find these files however I see folders such as "CheckPoint!FrameworkDirectoryDon'tDiscard" and "Sandblast Zero-Day-SystemFolder-Do notDiscard" but again no information on what they are&lt;/LI&gt;&lt;LI&gt;How is the&amp;nbsp;anti-ransomware agent "constantly monitoring suspicious activities", I understand for this one that details might be restricted to not have other vendors copying it but at least some high level description would be useful&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is only for anti-ransomware but I can give a similar list for nearly every sandblast feature.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Did I miss an ATRG or SK for all this somewhere ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2018 09:47:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19921#M3531</guid>
      <dc:creator>18568</dc:creator>
      <dc:date>2018-08-17T09:47:27Z</dc:date>
    </item>
    <item>
      <title>Re: SandBlast agent poor documentation</title>
      <link>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19922#M3532</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There is a lot of documention and SKs for SandBlast already, so we have a lot to study already &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&amp;nbsp;! But your question:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;I see in the documentation that the agent is supposed to create some random files in My Documents, etc. I cannot find these files however I see folders such as "CheckPoint!FrameworkDirectoryDon'tDiscard" and "Sandblast Zero-Day-SystemFolder-Do notDiscard" but again no information on what they are&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;for me seem not relevant at all - the random files are in the folders you see, but how could information on "what they are" help you in any way ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you need these answer to make customer(s) happy, you can always involve TAC and ask for information.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2018 10:52:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19922#M3532</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2018-08-17T10:52:38Z</dc:date>
    </item>
    <item>
      <title>Re: SandBlast agent poor documentation</title>
      <link>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19923#M3533</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;For my understanding, you are looking for tech reference, not an admin guide, correct?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2018 11:48:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19923#M3533</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2018-08-17T11:48:58Z</dc:date>
    </item>
    <item>
      <title>Re: SandBlast agent poor documentation</title>
      <link>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19924#M3534</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;P&gt;&lt;SPAN style="background-color: #f6f6f6;"&gt;Günther W. Albrecht wrote:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the random files are in the folders you see&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If that's the case the admin guide (page 187) is both wrong about the file names and the file locations:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="68955" class="image-2 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/68955_pastedImage_3.png" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG __jive_id="68954" alt="" class="image-1 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/68954_Capture.PNG" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;P&gt;Günther W. Albrecht wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="min-height: 8pt; padding: 0px;"&gt;&amp;nbsp;but how could information on "what they are" help you in any way ?&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I assumed the documentation is correct and they were not anti-ransomware files, in that case yes I want to know and the client will ask what are these files in their My Documents.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;P&gt;Günther W. Albrecht wrote:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If you need these answer to make customer(s) happy, you can always involve TAC and ask for information.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't see how "opening a ticket to understand their product" is a good documentation strategy for CheckPoint.&lt;/P&gt;&lt;P&gt;The main thing for me is that on Gateway side the documentation is usually quite good so I would just expect the same level for Endpoints.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2018 12:52:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19924#M3534</guid>
      <dc:creator>18568</dc:creator>
      <dc:date>2018-08-17T12:52:04Z</dc:date>
    </item>
    <item>
      <title>Re: SandBlast agent poor documentation</title>
      <link>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19925#M3535</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I would indeed love a tech reference on Sandblast agent the same way and level of details there is ATRG for ClusterXL or CoreXL.&lt;/P&gt;&lt;P&gt;But I even believe some of these questions and other should actually be in the admin guide as they are quite "basic" and quite important for the administration of the product (which is what an admin guide should be about isn't it &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2018 12:57:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19925#M3535</guid>
      <dc:creator>18568</dc:creator>
      <dc:date>2018-08-17T12:57:14Z</dc:date>
    </item>
    <item>
      <title>Re: SandBlast agent poor documentation</title>
      <link>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19926#M3536</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Let me see if I can answer the questions you've asked:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL style="color: #333333; background-color: #ffffff; border: 0px; padding: 0px 0px 0px 30px;"&gt;&lt;LI style="border: 0px; font-weight: inherit; margin: 0.5ex 0px;"&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;How does the agent decides which file to backup&lt;/BLOCKQUOTE&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any file modified by a user gets backed up.&lt;/P&gt;&lt;P&gt;You can exclude certain directories if you prefer.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL style="color: #333333; background-color: #ffffff; border: 0px; padding: 0px 0px 0px 30px;"&gt;&lt;LI style="border: 0px; font-weight: inherit; margin: 0.5ex 0px;"&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;Are the files backed up when accessed by a process (does that mean the process have to wait the backup is completed before running) or is the agent actively looking for these files (and if so how - only local or also remote on file servers?)&lt;/BLOCKQUOTE&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As stated above, files that get &lt;STRONG&gt;&lt;EM&gt;modified&lt;/EM&gt;&lt;/STRONG&gt;&amp;nbsp;get backed up.&lt;/P&gt;&lt;P&gt;I believe that also includes remote fileshares as well.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;&lt;UL style="color: #333333; background-color: #ffffff; border: 0px; padding: 0px 0px 0px 30px;"&gt;&lt;LI style="border: 0px; font-weight: inherit; margin: 0.5ex 0px;"&gt;How long is each file kept in the backup&lt;/LI&gt;&lt;LI style="border: 0px; font-weight: inherit; margin: 0.5ex 0px;"&gt;I can configure a backup size limit in the Endpoint Management but what happens when the client reaches the limit (I assume some files will be deleted, but which one)&lt;/LI&gt;&lt;/UL&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Think of it as a first in, first-out buffer.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL style="color: #333333; background-color: #ffffff; border: 0px; padding: 0px 0px 0px 30px;"&gt;&lt;LI style="border: 0px; font-weight: inherit; margin: 0.5ex 0px;"&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;I see in the documentation that the agent is supposed to create some random files in My Documents, etc. I cannot find these files however I see folders such as "CheckPoint!FrameworkDirectoryDon'tDiscard" and "Sandblast Zero-Day-SystemFolder-Do notDiscard" but again no information on what they are&lt;/BLOCKQUOTE&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I assume these exist for similar reasons to the ones documented above, but will admit I don't know exactly what these folders are for.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;UL style="color: #333333; background-color: #ffffff; border: 0px; padding: 0px 0px 0px 30px;"&gt;&lt;LI style="border: 0px; font-weight: inherit; margin: 0.5ex 0px;"&gt;&lt;BLOCKQUOTE class="jive_macro_quote jive-quote jive_text_macro"&gt;How is the&amp;nbsp;anti-ransomware agent "constantly monitoring suspicious activities", I understand for this one that details might be restricted to not have other vendors copying it but at least some high level description would be useful&lt;/BLOCKQUOTE&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basically anything that would be inconsistent with normal user activity is flagged.&lt;/P&gt;&lt;P&gt;Modifying a&amp;nbsp;large number of files at once is certainly suspicious, as is modifying our&amp;nbsp;random files.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2018 18:52:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19926#M3536</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-08-17T18:52:24Z</dc:date>
    </item>
    <item>
      <title>Re: SandBlast agent poor documentation</title>
      <link>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19927#M3537</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks a lot Dameon that's useful.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I may ask&amp;nbsp;two more questions on the other modules of Sandblast &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&amp;nbsp;:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;I assume the file detection (modified file and not read file) is the same with Threat Emulation but if you could confirm that would be great&lt;/LI&gt;&lt;LI&gt;ZeroPhishing: this is quite a vague question but how does it actually work, there is very little in the admin guide. How does the agent know if it is similar to another legitimate webpage? Does it&amp;nbsp;check the page against a DB of well-known website (banks, google, etc) and it would mean my small company authentication portal phishing would not be detected?&lt;/LI&gt;&lt;/UL&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2018 19:14:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19927#M3537</guid>
      <dc:creator>18568</dc:creator>
      <dc:date>2018-08-17T19:14:19Z</dc:date>
    </item>
    <item>
      <title>Re: SandBlast agent poor documentation</title>
      <link>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19928#M3538</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Threat Emulation is specifically looking at files downloaded, not necessarily existing files on the PC.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Zero Phishing&amp;nbsp;is looking for a combination of:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;IP and Domain Reputation&lt;/LI&gt;&lt;LI&gt;URL, Title, Visual, and Text Similarity&lt;/LI&gt;&lt;LI&gt;Image-only Sites&lt;/LI&gt;&lt;LI&gt;Multiple TLDs&lt;/LI&gt;&lt;LI&gt;Lookalike Favicon&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;My guess is based on IP/Domain Reputation or use of multiple TLDs, it could still find phishing sites.&lt;/P&gt;&lt;P&gt;Regardless, if corporate credentials are used on the site, it would block it (since presumably the phishing site would be outside your domain).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2018 19:31:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19928#M3538</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-08-17T19:31:20Z</dc:date>
    </item>
    <item>
      <title>Re: SandBlast agent poor documentation</title>
      <link>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19929#M3539</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Unless I'm mistaken Threat Emulation on Sandblast Agent also looks for files on the PC, what is called "File System Emulation" in the admin guide / Endpoint console. However I think this&amp;nbsp;answer was actually in the admin guide &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;, as it says "Emulate files&lt;STRONG&gt; written&lt;/STRONG&gt; to file system".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you for your answer regarding zero phishing.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2018 19:37:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19929#M3539</guid>
      <dc:creator>18568</dc:creator>
      <dc:date>2018-08-17T19:37:35Z</dc:date>
    </item>
    <item>
      <title>Re: SandBlast agent poor documentation</title>
      <link>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19930#M3540</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There are a few different components to SandBlast, and yes I missed the SBA-specific functionality (versus the browser plugin) &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2018 20:29:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/SandBlast-agent-poor-documentation/m-p/19930#M3540</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-08-17T20:29:04Z</dc:date>
    </item>
  </channel>
</rss>

