- Products
- Learn
- Local User Groups
- Partners
-
More
Join Us for CPX 360
23-24 February 2021
Important certificate update to CloudGuard Controller, CME,
and Azure HA Security Gateways
How to Remediate Endpoint & VPN
Issues (in versions E81.10 or earlier)
IDC Spotlight -
Uplevel The SOC
Important! R80 and R80.10
End Of Support around the corner (May 2021)
We have the checkpoint endpoint security client version E80.64 deployed on all of our windows machines.
We decided to enable the disable security policy(Done by editing the $FWDIR/conf/trac_client_1.ttm file on the firewall) for the client so some of our developers could disable it when testing locally. The one thing we are trying to figure out right now is how to go about monitoring all the employees disabling their security policy.
One observation we realized is that the trac.default and trac.config files seems to remain unchanged when the security policy is disabled, we were wondering if there was any other place this setting would reside at so we could run a scheduled job on machines to look for this change.
Any help with this would be appreciated.
I believe when a user disables their policy this is logged...however I will verify this.
About CheckMates
Learn Check Point
Advanced Learning
WELCOME TO THE FUTURE OF CYBER SECURITY