- Products
- Learn
- Local User Groups
- Partners
- More
Step Into the Future of
AI-Powered Cyber Security
When the Agents Attack
A Live Look at Agentic Exposure Validation
Bridge the CAASM Gap
with Exposure Management
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
CheckMates Go:
CheckMates Fest
Just had to restore Access to an estate after a bad policy was pushed.
Had to resort to unloadlocal on a cluster member and tunnel through ssh to be able to access the Manager and repair the damage.
After the above I attempted to replicate the above using Mgmt_CLI:
* Unload Local one one member > SSH to Manager
* List published sessions
* Revert to session with date before bad policy
* list the policy packages
* list the clusters in the package
* Run the command to install the policy to the cluster and ignore a failed install on one member
I cant disable acceleration so i cant install policy to the unloaded gateway.
Initial policy does not work either.
Only installing the "Bad" policy allows an accelerated policy but that breaks mgmt connectivity.
Is the ability to disable policy acceleration on a Mgmt_cli install going to be added or did i miss it?
You cannot do that at the moment via mgmt_cli, not possible. I actually had TAC case about this recently and they confirmed the same.
Best,
Andy
You cannot do that at the moment via mgmt_cli, not possible. I actually had TAC case about this recently and they confirmed the same.
Best,
Andy
The reason you can't do it via mgmt_clit is the API doesn't have support for this.
Otherwise, you'd see an option for it here: https://sc1.checkpoint.com/documents/latest/APIs/index.html#cli/install-policy~v2%20
Yeah its a silly thing not to implement when they have added functionally for every other step in a policy installation process.
Hopefully its added in the future.
Yea, lets hope so.
I agree, install-policy should have an option to disable accelerated policy install.
@Omer_Kleinstern
Hi,
You can add "force-full-install true" to the API command.
Hi Omer,
Thats same thing as disabling accelerated option?
Andy
Yes
Thank you!
If that’s true, can we update the docs accordingly?
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
Wed 10 Jun 2026 @ 01:00 PM (EDT)
Deep Dive: When the Agents Attack: A Live Look at Agentic Exposure ValidationThu 11 Jun 2026 @ 11:00 AM (EDT)
Tips and Tricks 2026 #8: Say Yes to AI Without Saying Yes to RiskFri 12 Jun 2026 @ 10:00 AM (CEST)
CheckMates Live Netherlands - Sessie 47: Continuous Threat Exposure ManagementTue 16 Jun 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point SASE | Internet Access Optimization & Performance TuningWed 10 Jun 2026 @ 01:00 PM (EDT)
Deep Dive: When the Agents Attack: A Live Look at Agentic Exposure ValidationThu 11 Jun 2026 @ 11:00 AM (EDT)
Tips and Tricks 2026 #8: Say Yes to AI Without Saying Yes to RiskFri 12 Jun 2026 @ 10:00 AM (CEST)
CheckMates Live Netherlands - Sessie 47: Continuous Threat Exposure ManagementTue 16 Jun 2026 @ 05:00 PM (CEST)
Under the Hood: Check Point SASE | Internet Access Optimization & Performance TuningThu 18 Jun 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point WAF - The Next Generation of AI powered protectionAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY