<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: E86.70 and Newer &amp;amp; Threat Hunting in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/E86-70-and-Newer-amp-Threat-Hunting/m-p/165573#M6351</link>
    <description>&lt;P&gt;R&amp;amp;D is investigating, this is not only your isolated issues. We will update you once we have more information.&lt;/P&gt;</description>
    <pubDate>Mon, 19 Dec 2022 12:37:35 GMT</pubDate>
    <dc:creator>_Val_</dc:creator>
    <dc:date>2022-12-19T12:37:35Z</dc:date>
    <item>
      <title>E86.70 and Newer &amp; Threat Hunting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/E86-70-and-Newer-amp-Threat-Hunting/m-p/165410#M6350</link>
      <description>&lt;P&gt;Hello CheckMates,&lt;/P&gt;&lt;P&gt;We've been fairly actively testing versions E86.70 &amp;amp; Newer due to their added support for 22H2 (albeit still EA).&lt;BR /&gt;We had recently noticed an issue relating to Threat Hunting; we only have records for "Detection Event" and "Network" sensor categories and even in those departments, the numbers are significantly lower than what we'd typically see in prior versions.&lt;BR /&gt;&lt;BR /&gt;And this is consistent among ~300 installations of these newer clients.&lt;/P&gt;&lt;P&gt;Within our statistics pool, E86.60 still appears to function as expected in regards to Threat Hunting delivery. A check was also performed with "checkconnectivity.exe" and on E86.80, which is our largest sample size, the 3 URLs associated with Threat Hunting Upload all appear to fail.&lt;BR /&gt;&lt;BR /&gt;We've upgraded a handful of clients to E87.00 and the connectivity check now appears to succeed, but we're still not receiving events to TH, though the sample size here is still fairly small.&lt;/P&gt;&lt;P&gt;Is anyone else experiencing this?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Dec 2022 13:01:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/E86-70-and-Newer-amp-Threat-Hunting/m-p/165410#M6350</guid>
      <dc:creator>Swiftyyyy</dc:creator>
      <dc:date>2022-12-16T13:01:46Z</dc:date>
    </item>
    <item>
      <title>Re: E86.70 and Newer &amp; Threat Hunting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/E86-70-and-Newer-amp-Threat-Hunting/m-p/165573#M6351</link>
      <description>&lt;P&gt;R&amp;amp;D is investigating, this is not only your isolated issues. We will update you once we have more information.&lt;/P&gt;</description>
      <pubDate>Mon, 19 Dec 2022 12:37:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/E86-70-and-Newer-amp-Threat-Hunting/m-p/165573#M6351</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-12-19T12:37:35Z</dc:date>
    </item>
    <item>
      <title>Re: E86.70 and Newer &amp; Threat Hunting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/E86-70-and-Newer-amp-Threat-Hunting/m-p/165635#M6355</link>
      <description>&lt;P&gt;Looks to have been corrected.&lt;BR /&gt;I opened a case with TAC yesterday, today I wanted to collect a set of logs for them &amp;amp; noticed things are working again.&lt;BR /&gt;So I'm confirming that E86.70, E86.80 as well as E87.00 in the sample sizes we have appear to be forwarding TH events again.&lt;/P&gt;</description>
      <pubDate>Tue, 20 Dec 2022 08:21:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/E86-70-and-Newer-amp-Threat-Hunting/m-p/165635#M6355</guid>
      <dc:creator>Swiftyyyy</dc:creator>
      <dc:date>2022-12-20T08:21:08Z</dc:date>
    </item>
    <item>
      <title>Re: E86.70 and Newer &amp; Threat Hunting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/E86-70-and-Newer-amp-Threat-Hunting/m-p/165653#M6357</link>
      <description>&lt;P&gt;Thanks for letting us know.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Dec 2022 09:49:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/E86-70-and-Newer-amp-Threat-Hunting/m-p/165653#M6357</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2022-12-20T09:49:43Z</dc:date>
    </item>
    <item>
      <title>Re: E86.70 and Newer &amp; Threat Hunting</title>
      <link>https://community.checkpoint.com/t5/Endpoint/E86-70-and-Newer-amp-Threat-Hunting/m-p/165657#M6358</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Following your feedback and others we have investigated the behavior and made a change in the backend side to resolve the issue.&lt;/P&gt;
&lt;P&gt;I am happy to hear you are getting the expected data correctly.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Have a nice day&lt;/P&gt;
&lt;P&gt;Shiran&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Dec 2022 11:23:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/E86-70-and-Newer-amp-Threat-Hunting/m-p/165657#M6358</guid>
      <dc:creator>Shiran_Gold</dc:creator>
      <dc:date>2022-12-20T11:23:23Z</dc:date>
    </item>
  </channel>
</rss>

