- Products
- Learn
- Local User Groups
- Partners
- More
Check Point
for Beginners
OPEN OTHER ARTICLES
Automation and APIs
Hi Mates,
I want to talk about a solution that exists in the Check Point ecosystem which I explored more deeply last year during a project: Check Point Zero Touch.
It is a relatively simple solution, but not very well known. I have completed several Check Point certifications, and I only discovered this solution when I was evaluating it for a real project.
I am attaching a PDF showing how to configure Zero Touch, including detailed descriptions and screenshots to make the configuration easier to understand and follow.
I also recommend reading the Zero Touch Administration Guide, as it provides very detailed and valuable information.
Hi Mates,
I want to talk about a solution that exists in the Check Point ecosystem which I explored more deeply last year during a project: Check Point Zero Touch.
It is a relatively simple solution, but not very well known. I have completed several Check Point certifications, and I only discovered this solution when I was evaluating it for a real project.
I am attaching a PDF showing how to configure Zero Touch, including detailed descriptions and screenshots to make the configuration easier to understand and follow.
Introduction Check Point Zero Touch.
I want to talk about a solution that exists in the Check Point ecosystem which I explored more deeply last year during a project: Check Point Zero Touch.
It is a relatively simple solution, but not very well known. I have completed several Check Point certifications, and I only discovered this solution when I was evaluating it for a real project.
Zero Touch Portal
Link to access the Zero Touch portal:
https://zerotouch.checkpoint.com
What is Check Point Zero Touch?
Zero Touch allows a Check Point firewall to automatically retrieve its configuration from the cloud as soon as it is connected to the Internet for the first time.
If the firewall receives a public IP address via a DHCP server, it will automatically reach the Zero Touch service and download its configuration without any additional action.
If the firewall cannot obtain Internet access via DHCP, the administrator is allowed to run the First Time Configuration Wizard on the firewall and configure basic Internet connectivity. Once Internet access is available, the firewall will then be able to connect to the Zero Touch server and retrieve its configuration.
The configuration obtained via Zero Touch replaces the First Time Configuration Wizard.
After a Quantum Spark firewall successfully connects to Zero Touch, downloads, and applies the configuration, it will not connect to the Zero Touch Cloud service again.
Zero Touch Templates support two types of templates:
Prerequisites
Limitations
Creating Configurations in Zero Touch
After logging in, create a Template.
This template will be associated with a gateway next on Inventory.
Small Office Gateway Template
The inicial configurations for this template:
Cloud Services:
CLISH Script
Here you can put the clish commands in the SMB format.
GAIA Gateway Template
Here the template for enterprise gateways
Settings:
Version Settings
It is usually not updated with the latest recommended software versions.
Configure admin and password for Gaia administration.
NTP, and SIC (Secure Internal Communication) for SMS or any management connection
Figure 7 - gaia gateway template
Management Interface:
Figure 8 - Gaia template management
Figure 9 - gaia gateway template clish
Inventory
In the Inventory, we can see all firewalls associated with our User Center account. From there, we link a template to a firewall. This action of linking a template to a firewall is called “CLAIM”.
Figure 10 - Inventory
Selected gateway will allow select a template.
After the firewall is claimed, it will appear under Claimed Gateways, where you can see various information about the status of the claimed firewall.
Figure 12 - claimed gateways informations
From this section, you also have a shortcut to view and edit the template associated with the firewall.
On Gateway First Time Wizard
It is important to highlight that some actions must be performed in the First Time Configuration Wizard of the firewall so it can successfully connect to the Zero Touch service.
Part 2 – Quantum Security Gateway
Note: This is a separate action that can be performed by another user at the remote site.
At this point, the deployment procedure starts.
I also recommend reading the Zero Touch Administration Guide, as it provides very detailed and valuable information.
This guide will help beginners as well as advanced professionals who are not familiar with the Zero Touch solution.
If you have already used Zero Touch in your projects, feel free to share your experience with us.
I hope this helps someone.
Best regards,
Hi Mates,
I want to talk about a solution that exists in the Check Point ecosystem which I explored more deeply last year during a project: Check Point Zero Touch.
It is a relatively simple solution, but not very well known. I have completed several Check Point certifications, and I only discovered this solution when I was evaluating it for a real project.
I am attaching a PDF showing how to configure Zero Touch, including detailed descriptions and screenshots to make the configuration easier to understand and follow.
I also recommend reading the Zero Touch Administration Guide, as it provides very detailed and valuable information.
Hi Mates,
I want to talk about a solution that exists in the Check Point ecosystem which I explored more deeply last year during a project: Check Point Zero Touch.
It is a relatively simple solution, but not very well known. I have completed several Check Point certifications, and I only discovered this solution when I was evaluating it
...You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY