<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Endpoint Application wise Scan Check in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Endpoint-Application-wise-Scan-Check/m-p/39642#M8433</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Recently I have implemented Endpoint Application wise Scan check successfully. There are documents where it is mentioned that how we can configure it but it is all theory. Here I have mentioned steps with snaps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First mark the option "No threshold : configure endpoint compliance requirements individually per application" in Gateway properties --&amp;gt; Mobile Access --&amp;gt; Endpoint Compliance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-1 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/64402_Capture3.JPG" style="height: auto;" /&gt;&lt;/P&gt;&lt;P&gt;After that identify which application you want to restrict (Only it will be accessible if user fulfill Scan check) and which application you want to allow.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Create new Protection level (Protection Level --&amp;gt; Manage TAB) which specify that allow this application to access only if user&amp;nbsp;pass security scan check.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-2 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/64405_Capture2.JPG" style="height: auto;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The application which you want to allow even if user does not pass Security scan check, specify the protection level as permissive.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-3 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/64406_Capture4.JPG" style="height: auto;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When User does not pass security scan check and try to access application for which we have set Protection level then user will get below message and will not able to access application.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-4 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/64407_Capture5.JPG" style="height: auto;" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 09 Apr 2018 11:53:58 GMT</pubDate>
    <dc:creator>Gaurav_Pandya</dc:creator>
    <dc:date>2018-04-09T11:53:58Z</dc:date>
    <item>
      <title>Endpoint Application wise Scan Check</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Endpoint-Application-wise-Scan-Check/m-p/39642#M8433</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Recently I have implemented Endpoint Application wise Scan check successfully. There are documents where it is mentioned that how we can configure it but it is all theory. Here I have mentioned steps with snaps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;First mark the option "No threshold : configure endpoint compliance requirements individually per application" in Gateway properties --&amp;gt; Mobile Access --&amp;gt; Endpoint Compliance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-1 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/64402_Capture3.JPG" style="height: auto;" /&gt;&lt;/P&gt;&lt;P&gt;After that identify which application you want to restrict (Only it will be accessible if user fulfill Scan check) and which application you want to allow.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Create new Protection level (Protection Level --&amp;gt; Manage TAB) which specify that allow this application to access only if user&amp;nbsp;pass security scan check.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-2 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/64405_Capture2.JPG" style="height: auto;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The application which you want to allow even if user does not pass Security scan check, specify the protection level as permissive.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-3 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/64406_Capture4.JPG" style="height: auto;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When User does not pass security scan check and try to access application for which we have set Protection level then user will get below message and will not able to access application.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-4 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/64407_Capture5.JPG" style="height: auto;" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Apr 2018 11:53:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Endpoint-Application-wise-Scan-Check/m-p/39642#M8433</guid>
      <dc:creator>Gaurav_Pandya</dc:creator>
      <dc:date>2018-04-09T11:53:58Z</dc:date>
    </item>
  </channel>
</rss>

