<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Threat Emulation appliance connectivity in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Threat-Emulation-appliance-connectivity/m-p/247047#M41305</link>
    <description>&lt;P&gt;What "interface" is used for any given communication is determined entirely by the device's routing table.&lt;BR /&gt;The "Main IP" for the TE object will be used for communication...on whatever interface that's configured on.&lt;BR /&gt;For offline updates of the Threat Emulation Engine (updates the underlying VMs), see:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk92509" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk92509&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MDPS is only relevant on regular Security Gateways, not dedicated Threat Emulation appliances.&lt;/P&gt;</description>
    <pubDate>Tue, 22 Apr 2025 20:52:20 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2025-04-22T20:52:20Z</dc:date>
    <item>
      <title>Threat Emulation appliance connectivity</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Threat-Emulation-appliance-connectivity/m-p/247031#M41298</link>
      <description>&lt;P&gt;Hi Team,&lt;/P&gt;&lt;P&gt;I have a difficult customer that for every darn request he comes back with 23402983423 questions.&lt;/P&gt;&lt;P&gt;He has one Cluster&amp;nbsp; and one TE250 appliance. Fast forward&amp;nbsp; MGMT interfaces is not connected and he connected interface 1 from the appliance to the actual management vlan.&amp;nbsp; Licensed the box and had no idea how to use it.&lt;/P&gt;&lt;P&gt;I told him to move the actual management IP address to the MGMT interface&amp;nbsp; and&amp;nbsp; put port1 to a network that belongs to a trusted segment between&amp;nbsp; firewall and Threat Emulation appliance.&lt;/P&gt;&lt;P&gt;How he's asking me bunch of questions on which I have no idea how to answer.&lt;/P&gt;&lt;P&gt;- where to put the default route&lt;/P&gt;&lt;P&gt;- which interface will the appliance use to 'talk' with SMS about the license&lt;/P&gt;&lt;P&gt;- which interface will be used for&amp;nbsp; updates from cloud&lt;/P&gt;&lt;P&gt;- how the internal VM will be updated ? (what ?! is this something that customer can do?)&lt;/P&gt;&lt;P&gt;- how does the gateway communicate with the TE appliance, on which interface&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;and the most funny one that melted my brain:&amp;nbsp;&lt;/P&gt;&lt;P&gt;- how to enable MDPS on this appliance.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So I'm asking experts for some guidance as I'm telling you his questions are melting my brain.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Apr 2025 17:50:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Threat-Emulation-appliance-connectivity/m-p/247031#M41298</guid>
      <dc:creator>melcu</dc:creator>
      <dc:date>2025-04-22T17:50:37Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Emulation appliance connectivity</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Threat-Emulation-appliance-connectivity/m-p/247036#M41301</link>
      <description>&lt;P&gt;I believe as far as interfaces, you can pick whichever one you want. For MDPS, see below. As far as VM, how will it be updated? I dont really see any relevance to CP there.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk138672" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk138672&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 22 Apr 2025 18:48:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Threat-Emulation-appliance-connectivity/m-p/247036#M41301</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-22T18:48:21Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Emulation appliance connectivity</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Threat-Emulation-appliance-connectivity/m-p/247037#M41302</link>
      <description>&lt;P&gt;Does TE appliances even support MDPS ?&lt;/P&gt;&lt;P&gt;So what's the purpose of having a dedicated MGMT interface if everything can be done through data ports ?&lt;/P&gt;&lt;P&gt;I've never touched a TE appliance and I have no idea how to connect it. For me it makes more sense to have high speed interfaces for&amp;nbsp; firewall-TE communication and just leave the MGMT for Gaia purposes only.&lt;/P&gt;&lt;P&gt;But as far as static route .. if you put it through management (which has no internet access) then how the appliance will connect to CP cloud for updates ?&amp;nbsp; No proxy in the network btw.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Apr 2025 18:52:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Threat-Emulation-appliance-connectivity/m-p/247037#M41302</guid>
      <dc:creator>melcu</dc:creator>
      <dc:date>2025-04-22T18:52:23Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Emulation appliance connectivity</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Threat-Emulation-appliance-connectivity/m-p/247038#M41303</link>
      <description>&lt;P&gt;I dont see why it would not support it, nothing for it listed under limitation. You are right about static route, connectivity needs to be there to connect externally, otherwise it will never get any updates.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 22 Apr 2025 19:03:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Threat-Emulation-appliance-connectivity/m-p/247038#M41303</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-22T19:03:47Z</dc:date>
    </item>
    <item>
      <title>Re: Threat Emulation appliance connectivity</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Threat-Emulation-appliance-connectivity/m-p/247047#M41305</link>
      <description>&lt;P&gt;What "interface" is used for any given communication is determined entirely by the device's routing table.&lt;BR /&gt;The "Main IP" for the TE object will be used for communication...on whatever interface that's configured on.&lt;BR /&gt;For offline updates of the Threat Emulation Engine (updates the underlying VMs), see:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk92509" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk92509&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MDPS is only relevant on regular Security Gateways, not dedicated Threat Emulation appliances.&lt;/P&gt;</description>
      <pubDate>Tue, 22 Apr 2025 20:52:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Threat-Emulation-appliance-connectivity/m-p/247047#M41305</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2025-04-22T20:52:20Z</dc:date>
    </item>
  </channel>
</rss>

