<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Best Practice for Data Center and Perimeter Firewall blades to enable in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223275#M37192</link>
    <description>&lt;P&gt;If you have all licenses and powerfull appliances you can enable all blades. Maybe you need some features only on one of the firewalls you can disable these, meaning as an example MobileAccessBlade only on perimeter firewall.&lt;/P&gt;
&lt;P&gt;The answer is like a lot of other questions…. It depends &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 11 Aug 2024 20:19:58 GMT</pubDate>
    <dc:creator>Wolfgang</dc:creator>
    <dc:date>2024-08-11T20:19:58Z</dc:date>
    <item>
      <title>Best Practice for Data Center and Perimeter Firewall blades to enable</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223268#M37185</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;I want to follow best practices for enabling blades on perimeter and data center firewalls, given that Sandblast license has been acquired. what is the best practice to be enabled on Data center and Perimeter security gateway.&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;</description>
      <pubDate>Sun, 11 Aug 2024 18:04:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223268#M37185</guid>
      <dc:creator>Ihenock1011</dc:creator>
      <dc:date>2024-08-11T18:04:02Z</dc:date>
    </item>
    <item>
      <title>Re: Best Practice for Data Center and Perimeter Firewall blades to enable</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223269#M37186</link>
      <description>&lt;P&gt;Depends on the blades, what blades you want to enable? Are you going to https inspection? What will the dc firewall protect? Servers, shares etc? And perimeter, only internet access or servers in DMZ? What licenses you have know purchased? What hardware we are talking about, is it maybe Maestro or VSX?&lt;/P&gt;</description>
      <pubDate>Sun, 11 Aug 2024 18:46:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223269#M37186</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2024-08-11T18:46:33Z</dc:date>
    </item>
    <item>
      <title>Re: Best Practice for Data Center and Perimeter Firewall blades to enable</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223271#M37188</link>
      <description>&lt;P&gt;DC Firewall Protects the server farm while the perimeter gateway will protect the external facing servers and Internet. HA mode SG hardware appliance.&lt;/P&gt;</description>
      <pubDate>Sun, 11 Aug 2024 19:01:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223271#M37188</guid>
      <dc:creator>Ihenock1011</dc:creator>
      <dc:date>2024-08-11T19:01:30Z</dc:date>
    </item>
    <item>
      <title>Re: Best Practice for Data Center and Perimeter Firewall blades to enable</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223273#M37190</link>
      <description>&lt;P&gt;And this?&amp;nbsp;&lt;SPAN&gt;Depends on the blades, what blades you want to enable? Are you going to https inspection?&amp;nbsp;W&lt;/SPAN&gt;&lt;SPAN&gt;hat licenses you have now purchased?&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 11 Aug 2024 19:21:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223273#M37190</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2024-08-11T19:21:34Z</dc:date>
    </item>
    <item>
      <title>Re: Best Practice for Data Center and Perimeter Firewall blades to enable</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223274#M37191</link>
      <description>&lt;P&gt;Sandblast License. I want to know which blades should be enabled based on best practices for perimeter and data center security gateways.&lt;/P&gt;</description>
      <pubDate>Sun, 11 Aug 2024 20:00:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223274#M37191</guid>
      <dc:creator>Ihenock1011</dc:creator>
      <dc:date>2024-08-11T20:00:05Z</dc:date>
    </item>
    <item>
      <title>Re: Best Practice for Data Center and Perimeter Firewall blades to enable</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223275#M37192</link>
      <description>&lt;P&gt;If you have all licenses and powerfull appliances you can enable all blades. Maybe you need some features only on one of the firewalls you can disable these, meaning as an example MobileAccessBlade only on perimeter firewall.&lt;/P&gt;
&lt;P&gt;The answer is like a lot of other questions…. It depends &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 11 Aug 2024 20:19:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223275#M37192</guid>
      <dc:creator>Wolfgang</dc:creator>
      <dc:date>2024-08-11T20:19:58Z</dc:date>
    </item>
    <item>
      <title>Re: Best Practice for Data Center and Perimeter Firewall blades to enable</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223276#M37193</link>
      <description>&lt;P&gt;Really depends on the network. For example if you do not have mail servers in dc or on perimeter then there is no point checking for the Anti-spam blade or the MTA setup. Or if you do not have SMB shares then you can skip that in the inspection for AV blade(and other blades) Same for FTP.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I don't think there is a general advice like 'if you must protect DC enable the following blades' Because you can have anything or almost nothing in a DC. Personally, I would go for all the threat prevention blades in combi with app and URL filtering. (Of course HTTS inspection, very important)&lt;/P&gt;</description>
      <pubDate>Sun, 11 Aug 2024 20:22:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223276#M37193</guid>
      <dc:creator>Lesley</dc:creator>
      <dc:date>2024-08-11T20:22:57Z</dc:date>
    </item>
    <item>
      <title>Re: Best Practice for Data Center and Perimeter Firewall blades to enable</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223278#M37195</link>
      <description>&lt;P&gt;Exploring Autonomous Threat Prevention (sk163593) is also an option to help manage the configuration.&lt;/P&gt;</description>
      <pubDate>Sun, 11 Aug 2024 23:40:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Best-Practice-for-Data-Center-and-Perimeter-Firewall-blades-to/m-p/223278#M37195</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2024-08-11T23:40:15Z</dc:date>
    </item>
  </channel>
</rss>

