<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Harmony Endpoint client that is not allowed to go to Internet in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/208298#M8364</link>
    <description>&lt;P&gt;Hi Blason&lt;/P&gt;
&lt;P&gt;Yes. It will be available in E88.20 that should be released any time soon (will try and remember to post again when it does)&lt;/P&gt;
&lt;P&gt;The capability will be available for Windows clients as Early Availability (EA). Please reach out to me directly if want to participate&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2024 11:26:29 GMT</pubDate>
    <dc:creator>JonnyRabinowitz</dc:creator>
    <dc:date>2024-03-11T11:26:29Z</dc:date>
    <item>
      <title>Harmony Endpoint client that is not allowed to go to Internet</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/205006#M8152</link>
      <description>&lt;P&gt;Hi All,&lt;BR /&gt;&lt;BR /&gt;Recently, my client has purchased 250 seats of harmony endpoint license with &lt;STRONG&gt;EPS Cloud Management.&lt;BR /&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Their environment is all servers that comprised mix of &lt;STRONG&gt;Window&lt;/STRONG&gt; and &lt;STRONG&gt;Linux&lt;/STRONG&gt; and are not allowed to go to Internet.&lt;BR /&gt;&lt;BR /&gt;In this case, how should we ensure that installed endpoint client able to grab malware database update and how management server able to manage those offline client ?&lt;BR /&gt;&lt;BR /&gt;I had gone through&amp;nbsp;&lt;SPAN&gt;Harmony Endpoint EPMaaS Administration Guide, there are few possible methods to achieve and will need verification on some capability as listed below:&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Super Node:&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;1) Does Super Node able to push all Threat Prevention blade database update to all endpoint clients(Windows and Linux), and able to relay policy changes to clients(Windows and Linux)?&lt;STRONG&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;Proxy:&lt;BR /&gt;&lt;BR /&gt;&lt;/STRONG&gt;1) Does authenticated proxy able to work on Linux servers?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;2) I knows that it mostly will work on Windows server.&lt;BR /&gt;&lt;BR /&gt;&lt;STRONG&gt;Deploy another On-Prems Endpoint Management Server&lt;/STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;1) If the On-Prem Endpoint Management Server is able to go over internet, does the client(Linux and Windows) itself also need to have internet connectivity ?&amp;nbsp; Based on&amp;nbsp;Harmony Endpoint EPMaaS Administration Guide, it shows the linux endpoint need to have internet &lt;FONT color="#000000"&gt;connectivity&lt;/FONT&gt;&amp;nbsp;by itself.&lt;STRONG&gt;&lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;BR /&gt;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Feb 2024 05:44:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/205006#M8152</guid>
      <dc:creator>Wei_Soon_Heng</dc:creator>
      <dc:date>2024-02-05T05:44:58Z</dc:date>
    </item>
    <item>
      <title>Re: Harmony Endpoint client that is not allowed to go to Internet</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/205021#M8154</link>
      <description>&lt;P&gt;Ask CP TAC for the configuration suggested by CP !&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Feb 2024 08:05:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/205021#M8154</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2024-02-05T08:05:41Z</dc:date>
    </item>
    <item>
      <title>Re: Harmony Endpoint client that is not allowed to go to Internet</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/205098#M8161</link>
      <description>&lt;P&gt;You are correct that the SuperNode is available for Windows and allows to share local copies of things like Anti-Malware signatures, Behavioral Guard rules and Static Analysis ML/AI models.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This capability is currently being extended so that will allow all communication from the Windows client to be made through the Super Node and prevent direct connectivity to the Internet. These new capabilities should e available during Q1 2024&lt;/P&gt;
&lt;P&gt;There are also plans to have the SuperNode provide the same capabilities for Linux and Mac clients. The final schedule for these items has not been locked down yet but should be in firs half of the year&lt;/P&gt;</description>
      <pubDate>Mon, 05 Feb 2024 21:55:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/205098#M8161</guid>
      <dc:creator>JonnyRabinowitz</dc:creator>
      <dc:date>2024-02-05T21:55:42Z</dc:date>
    </item>
    <item>
      <title>Re: Harmony Endpoint client that is not allowed to go to Internet</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/208280#M8358</link>
      <description>&lt;P&gt;Hey Folks,&lt;/P&gt;
&lt;P&gt;Wondering has that been rolled out? Will that be available in R81.20?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2024 03:21:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/208280#M8358</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2024-03-11T03:21:11Z</dc:date>
    </item>
    <item>
      <title>Re: Harmony Endpoint client that is not allowed to go to Internet</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/208298#M8364</link>
      <description>&lt;P&gt;Hi Blason&lt;/P&gt;
&lt;P&gt;Yes. It will be available in E88.20 that should be released any time soon (will try and remember to post again when it does)&lt;/P&gt;
&lt;P&gt;The capability will be available for Windows clients as Early Availability (EA). Please reach out to me directly if want to participate&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2024 11:26:29 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/208298#M8364</guid>
      <dc:creator>JonnyRabinowitz</dc:creator>
      <dc:date>2024-03-11T11:26:29Z</dc:date>
    </item>
    <item>
      <title>Re: Harmony Endpoint client that is not allowed to go to Internet</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/208635#M8386</link>
      <description>&lt;P&gt;E88.20 is now available and includes this capability for Windows based clients&lt;/P&gt;
&lt;P&gt;Enables semi-isolated environment where all endpoint communications are routed through a super node&lt;/P&gt;
&lt;P&gt;This capability is for Early Availability (EA) and not available by default in General Available (GA) version&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please unicast me if any interest to join EA program&lt;/P&gt;</description>
      <pubDate>Wed, 13 Mar 2024 11:29:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/208635#M8386</guid>
      <dc:creator>JonnyRabinowitz</dc:creator>
      <dc:date>2024-03-13T11:29:19Z</dc:date>
    </item>
    <item>
      <title>Re: Harmony Endpoint client that is not allowed to go to Internet</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/224712#M9205</link>
      <description>&lt;P&gt;Hi Jonny,&lt;BR /&gt;&lt;BR /&gt;May I know is this capability currently included for or removed for the superNode and the superNode client?&lt;BR /&gt;&lt;BR /&gt;This is because we have client utilizing superNode and able to get all the blades updated previously but now we are only able to get the AM database to update from superNode only while other blades will have no connection to server. This is behaving like the version before E88.20.&lt;BR /&gt;&lt;BR /&gt;Could you provide any insight on this? Appreciate.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 28 Aug 2024 03:46:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/224712#M9205</guid>
      <dc:creator>PJ_WONG</dc:creator>
      <dc:date>2024-08-28T03:46:38Z</dc:date>
    </item>
    <item>
      <title>Re: Harmony Endpoint client that is not allowed to go to Internet</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/224844#M9214</link>
      <description>&lt;P&gt;Should be GA, considering there's several SKs on it.&lt;BR /&gt;For example:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk171703" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk171703&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 28 Aug 2024 14:13:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/224844#M9214</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-08-28T14:13:34Z</dc:date>
    </item>
    <item>
      <title>Re: Harmony Endpoint client that is not allowed to go to Internet</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/224876#M9216</link>
      <description>&lt;P&gt;To repeat from earlier in the thread&lt;/P&gt;
&lt;P&gt;"You are correct that the SuperNode is available for Windows and allows to share local copies of things like Anti-Malware signatures, Behavioral Guard rules and Static Analysis ML/AI models. (this existed prior to E88.20)&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This capability is currently being extended so that will allow all communication from the Windows client to be made through the Super Node and prevent direct connectivity to the Internet.&lt;SPAN&gt;&amp;nbsp;(Extended functionality available from E88.20 and onwards as EA]"&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I have not been able to get any confirmation that extended functionality (aka semi-isolated network) is GA and EAs for customers are ongoing with the latest release&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 28 Aug 2024 17:38:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/224876#M9216</guid>
      <dc:creator>JonnyRabinowitz</dc:creator>
      <dc:date>2024-08-28T17:38:13Z</dc:date>
    </item>
    <item>
      <title>Re: Harmony Endpoint client that is not allowed to go to Internet</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/224924#M9217</link>
      <description>&lt;P&gt;Was able to confirm that GA for this feature will in fact be in E88.60 which is the next release up and should be available within the order of weeks&lt;/P&gt;
&lt;P&gt;It is great to see the interest in this feature. Note that customers leveraging semi-isolated networks will also be able to leverage the EDR package with HEP and leverage XDR capabilities&lt;/P&gt;</description>
      <pubDate>Fri, 30 Aug 2024 04:52:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/224924#M9217</guid>
      <dc:creator>JonnyRabinowitz</dc:creator>
      <dc:date>2024-08-30T04:52:58Z</dc:date>
    </item>
    <item>
      <title>Re: Harmony Endpoint client that is not allowed to go to Internet</title>
      <link>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/225073#M9222</link>
      <description>&lt;P&gt;Thank you for the information! It appears that we were able to download E88.20 with EA capability from the web portal when it was released. In that case, we'll be anticipating the next release for download.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 30 Aug 2024 02:12:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/Harmony-Endpoint-client-that-is-not-allowed-to-go-to-Internet/m-p/225073#M9222</guid>
      <dc:creator>PJ_WONG</dc:creator>
      <dc:date>2024-08-30T02:12:22Z</dc:date>
    </item>
  </channel>
</rss>

