- Products
- Learn
- Local User Groups
- Partners
- More
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Call For Papers
Your Expertise. Our Stage
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
Ink Dragon: A Major Nation-State Campaign
Watch HereCheckMates Go:
CheckMates Fest
Hello,
What is the exact port requirement between a Management Server and the Gateways/Clusters.
My Mgmt Server and GWs are in different Networks so need to open ports for communication
Thanks
Check Point has implied rules which usually allow communications between management and gateways.
sk115600 shows how to view the implied rules in order to see specific management <-> gateway firewall rules.
sk52421 includes all of the ports used by Check Point's software.
Just have a look at @HeikoAnkenbrand really nice paintings.
R80-x-Ports-Used-for-Communication-by-Various-Check-Point
Wolfgang
Check Point has implied rules which usually allow communications between management and gateways.
sk115600 shows how to view the implied rules in order to see specific management <-> gateway firewall rules.
sk52421 includes all of the ports used by Check Point's software.
Just have a look at @HeikoAnkenbrand really nice paintings.
R80-x-Ports-Used-for-Communication-by-Various-Check-Point
Wolfgang
Yes, the implied rules for the control connections are using the main IP address of the gateway and management objects.
Wolfgang
I am in same situation. i need to allow the traffic in my internal firewall, for this i need details of ports which needs to be open between mgmt server and the firewall.
if you have made the list, please share the list.
WR
This question is definitely answered by the links provided in this thread (which I've marked as "Solutions").
Pay close attention to the default implied rules in sk115600 and you must account for all the relevant IP addresses of your Check Point assets on the third party firewall.
The tcp 18209, 18210 and 18211 ports are important for automated SIC certificate renewal (and manual SIC trust establishment when relevant)
The automatic certificate renewal is done at 75% of the life of the 5 year SIC certificate life, if I remember correctly, so it's not an everyday port but every few years.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 7 | |
| 4 | |
| 4 | |
| 3 | |
| 2 | |
| 2 | |
| 1 | |
| 1 |
Tue 21 Apr 2026 @ 05:00 PM (IDT)
AI Security Masters E7: How CPR Broke ChatGPT's Isolation and What It Means for YouTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 21 Apr 2026 @ 05:00 PM (IDT)
AI Security Masters E7: How CPR Broke ChatGPT's Isolation and What It Means for YouTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY