- CheckMates
- :
- Products
- :
- Developers
- :
- API / CLI Discussion
- :
- Re: What is the minimum privilege for send sam rul...
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
What is the minimum privilege for send sam rule from API?
Hi,
What is the minimum privilege for send sam rule from API? We don't want to do this with admin account. Is this possible?
Any advice about this issue would be appreciated.
Thanks,
Yasemen
2 Replies
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
As far as I know, the only way to set a SAM rule is to run a script on the gateway that executes fw sam (or similar).
In which case, I assume the permission that's required is for run-script, which I believe is the following:
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
GAIA users with "adminRole" can add SAM rules with CLISH.
Other options are:
- Automatic Reactions with SmartEvent - and then no one needs to manually do the SAM thing
- IOC API
