- Products
- Learn
- Local User Groups
- Partners
- More
Quantum Spark Management Unleashed!
Check Point Named Leader
2025 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall
HTTPS Inspection
Help us to understand your needs better
CheckMates Go:
SharePoint CVEs and More!
Hi All,
How can I configure the threat emulation policy to prevent users from downloading specific files via Internet ?
I think its the Threat Emulation advanced options from looking at Admin guide but not sure how and need some help to point me in right direction. We are still using the on-prem Infinity Portal on server and not migrated to cloud as yet.
Normally you have two options. Supported files and unsupported files. If you edit unsupported files, you are able to put a custom extension.
Regarding DLP, yes this is true. Available only on cloud management and not planned on-prem as far as I know. The DLP feature requires an add-on license or its included on the ELITE package.
I've checked and I think the only way to block upload of specific files is by using DLP. Didn't find on threat prevention policy.
Hi @misj2
The solution only with Harmony feasible?
If on CP gateway -> the Content Awareness is for this!
Akos
Hi Akos,
We dont have content awareness enabled on gateways.
I think Harmony endpoint can do this just need to know how ?
Hi,
I'm not good at Harmony, so I would wait the experts in this topic.
Why I wrote this tip: this kind of demand arose at on of my customers, and this was the solution for them.
Akos
Hi Akos,
Thanks will await response from Experts to see if there is a solution. Cheers !
That's not the function of Threat Emulation, to the best of my knowledge.
Are the files on a specific website? URL Filtering might be useful.
There is a request to block files with .XPS extenstion outright.
Hello,
You can configure that under : Threat Prevention > Policy Capabilities > Web & Files Protection > Advanced Settings > Download Protection > Override default file actions (download)
I had a look at that but no option to add a new extension to the list , it looks like a predefined list ? Is there can we add to the list ?
Not had a look at DLP which is on EPMaas does that need a license ?
Normally you have two options. Supported files and unsupported files. If you edit unsupported files, you are able to put a custom extension.
Regarding DLP, yes this is true. Available only on cloud management and not planned on-prem as far as I know. The DLP feature requires an add-on license or its included on the ELITE package.
Thank you I think I will give that a go !
Sorry last question the Threat Prevention only blocks downloads, how can you prevent access outright of specific files ?
I've checked and I think the only way to block upload of specific files is by using DLP. Didn't find on threat prevention policy.
Ok Thanks !
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
User | Count |
---|---|
4 | |
3 | |
3 | |
2 | |
1 | |
1 | |
1 | |
1 | |
1 |
Thu 18 Sep 2025 @ 03:00 PM (CEST)
Bridge the Unmanaged Device Gap with Enterprise Browser - EMEAThu 18 Sep 2025 @ 02:00 PM (EDT)
Bridge the Unmanaged Device Gap with Enterprise Browser - AmericasMon 22 Sep 2025 @ 03:00 PM (CEST)
Defending Hyperconnected AI-Driven Networks with Hybrid Mesh Security EMEAMon 22 Sep 2025 @ 02:00 PM (EDT)
Defending Hyperconnected AI-Driven Networks with Hybrid Mesh Security AMERThu 18 Sep 2025 @ 03:00 PM (CEST)
Bridge the Unmanaged Device Gap with Enterprise Browser - EMEAThu 18 Sep 2025 @ 02:00 PM (EDT)
Bridge the Unmanaged Device Gap with Enterprise Browser - AmericasMon 22 Sep 2025 @ 03:00 PM (CEST)
Defending Hyperconnected AI-Driven Networks with Hybrid Mesh Security EMEAAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY