<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: blade to isolate the equipment in Endpoint</title>
    <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235715#M9823</link>
    <description>&lt;P&gt;Genius, idol, crack!&lt;BR /&gt;Thank you very much!&lt;BR /&gt;I send you a big hug in the best Argentine style, with the warmth that it deserves!&lt;/P&gt;</description>
    <pubDate>Fri, 13 Dec 2024 19:07:47 GMT</pubDate>
    <dc:creator>earomero</dc:creator>
    <dc:date>2024-12-13T19:07:47Z</dc:date>
    <item>
      <title>blade to isolate the equipment</title>
      <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235665#M9807</link>
      <description>&lt;P&gt;Good morning, greetings from Argentina!&lt;/P&gt;&lt;P&gt;Today I had a computer incident with an endpoint and I isolated the equipment. I thought that this measure was implemented...but no, I attached a photo where it says that I do not have the necessary blade installed.&lt;BR /&gt;How can I install the blade necessary for this?&lt;/P&gt;&lt;P&gt;Muchas gracias, saludos!&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2024 13:26:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235665#M9807</guid>
      <dc:creator>earomero</dc:creator>
      <dc:date>2024-12-13T13:26:35Z</dc:date>
    </item>
    <item>
      <title>Re: blade to isolate the equipment</title>
      <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235692#M9812</link>
      <description>&lt;P&gt;hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/120689"&gt;@earomero&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Follow the image and put the name of the machine. On the screen you will see the blade that is not running&lt;/P&gt;
&lt;P&gt;asset management --&amp;gt; organization ---&amp;gt; computers&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Ajuda.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/28804i13DD6581B472403C/image-size/large?v=v2&amp;amp;px=999" role="button" title="Ajuda.png" alt="Ajuda.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2024 15:42:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235692#M9812</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2024-12-13T15:42:44Z</dc:date>
    </item>
    <item>
      <title>Re: blade to isolate the equipment</title>
      <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235694#M9813</link>
      <description>&lt;P&gt;Hi!&lt;BR /&gt;I am sending you a photo of my assets. I don't see the isolate machine blade in capabilities. How can I install it?&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2024 15:57:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235694#M9813</guid>
      <dc:creator>earomero</dc:creator>
      <dc:date>2024-12-13T15:57:11Z</dc:date>
    </item>
    <item>
      <title>Re: blade to isolate the equipment</title>
      <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235697#M9814</link>
      <description>&lt;P&gt;hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/120689"&gt;@earomero&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Select the machine to know which blade is not showing&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2024 16:06:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235697#M9814</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2024-12-13T16:06:35Z</dc:date>
    </item>
    <item>
      <title>Re: blade to isolate the equipment</title>
      <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235702#M9815</link>
      <description>&lt;P&gt;hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/120689"&gt;@earomero&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You have to install the firewall blade&lt;/P&gt;
&lt;DIV id="tinyMceEditor_2ba9dea7182d12lluner_0" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="erro_firewall.png" style="width: 585px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/28805i928D6BA2E1D8EB37/image-size/large?v=v2&amp;amp;px=999" role="button" title="erro_firewall.png" alt="erro_firewall.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="firewall_erro.png" style="width: 450px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/28806i083F7381AFCAD572/image-size/large?v=v2&amp;amp;px=999" role="button" title="firewall_erro.png" alt="firewall_erro.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2024 16:33:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235702#M9815</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2024-12-13T16:33:09Z</dc:date>
    </item>
    <item>
      <title>Re: blade to isolate the equipment</title>
      <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235709#M9818</link>
      <description>&lt;P&gt;Thanks for the reply. Is it necessary to have XDR to deploy the firewall blade?&lt;/P&gt;&lt;P&gt;Saludos!&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2024 17:37:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235709#M9818</guid>
      <dc:creator>earomero</dc:creator>
      <dc:date>2024-12-13T17:37:12Z</dc:date>
    </item>
    <item>
      <title>Re: blade to isolate the equipment</title>
      <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235710#M9819</link>
      <description>&lt;P&gt;NO&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2024 17:42:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235710#M9819</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2024-12-13T17:42:14Z</dc:date>
    </item>
    <item>
      <title>Re: blade to isolate the equipment</title>
      <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235711#M9820</link>
      <description>&lt;P&gt;OK! Thanks!&lt;BR /&gt;How can I install the firewall blade without having to reinstall the entire harmony on the endpoints?&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2024 17:53:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235711#M9820</guid>
      <dc:creator>earomero</dc:creator>
      <dc:date>2024-12-13T17:53:44Z</dc:date>
    </item>
    <item>
      <title>Re: blade to isolate the equipment</title>
      <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235713#M9821</link>
      <description>&lt;P&gt;Selects the firewall checkbox and applies the policy by selecting the machine&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2024-12-13_14-59.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/28809i00E337F141F453F1/image-size/large?v=v2&amp;amp;px=999" role="button" title="2024-12-13_14-59.png" alt="2024-12-13_14-59.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2024 18:02:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235713#M9821</guid>
      <dc:creator>lluner</dc:creator>
      <dc:date>2024-12-13T18:02:56Z</dc:date>
    </item>
    <item>
      <title>Re: blade to isolate the equipment</title>
      <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235715#M9823</link>
      <description>&lt;P&gt;Genius, idol, crack!&lt;BR /&gt;Thank you very much!&lt;BR /&gt;I send you a big hug in the best Argentine style, with the warmth that it deserves!&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2024 19:07:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235715#M9823</guid>
      <dc:creator>earomero</dc:creator>
      <dc:date>2024-12-13T19:07:47Z</dc:date>
    </item>
    <item>
      <title>Re: blade to isolate the equipment</title>
      <link>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235716#M9824</link>
      <description>&lt;P&gt;This might be considered potentially harmful advice without explaining the significant implications it may have.&lt;/P&gt;&lt;P&gt;Selecting to install a new blade via. deployment policy will result in the following:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Devices affected by the policy will immediately start to download the required packages, while this shouldn't be too significant for just the Firewall blade, we have had customer environments simply collapse if too many devices at once started pulling updates&lt;/LI&gt;&lt;LI&gt;The reconfiguration of blades on an installed systems WILL result in a reboot. Yes by default the client policy permits the user to postpone the operation, but once finished there will be a 2 minute timer to reboot without option of cancel. A notification should be done to users in most cases and some thinking should be done on when to deploy&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Seeing as you don't appear to be too familiar with the Firewall blade keep in mind this WILL disable your existing Firewall (Windows Defender Firewall) and the DEFAULT policy for Check Point local Firewall is essentially Any Any Allow, meaning by just installing the Firewall blade without prior configuration of policy CAN and WILL reduce your over-all security posture.&lt;/P&gt;&lt;P&gt;Honestly, with how genuinely BAD the local firewall blade is to configure, I'd personally just deal with not having an isolate option.&lt;/P&gt;&lt;P&gt;Local firewall in its current iteration is embarrassing&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;It is in no way, shape or form Application Aware. Yes there is Application Control, but there is such a high barrier of entry to configuring that it's just not something you can manage in most environments&lt;/LI&gt;&lt;LI&gt;For an ENDPOINT product you really, genuinely should be able to do rules with "PROCESS NAME" as the Source field&lt;/LI&gt;&lt;LI&gt;There are no dynamic objects (not even one for EPMaaS for example)&lt;/LI&gt;&lt;LI&gt;You can't negate rules (for example using RFC1918 network group negated as a way to define the "Internet" isn't a thing you can do; you effectively have one network group you can negate by abusing the "Trusted" zone mechanic)&lt;/LI&gt;&lt;LI&gt;Sometimes rules don't catch if they're too precise and you resort to doing funky *ANY* rules just to get basic functionality&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;For a company whose bread and butter is the firewall the local firewall blade on Harmony Endpoint really needs to step up, because currently it's an outright downgrade of out-of-the-box Windows Defender Firewall with the only real perk being the Isolate functionality&lt;/P&gt;</description>
      <pubDate>Fri, 13 Dec 2024 19:29:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Endpoint/blade-to-isolate-the-equipment/m-p/235716#M9824</guid>
      <dc:creator>Swiftyyyyy</dc:creator>
      <dc:date>2024-12-13T19:29:38Z</dc:date>
    </item>
  </channel>
</rss>

