- Products
- Learn
- Local User Groups
- Partners
- More
Quantum Spark Management Unleashed!
Check Point Named Leader
2025 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall
HTTPS Inspection
Help us to understand your needs better
CheckMates Go:
SharePoint CVEs and More!
Hi all,
the early version 84.30 for macOS on Big Sur works fine for us on both Intel and M1 MacBooks.
But with 84.30 it asks for “Filter Network Content” on Big Sur. See picture below. This window can be suppressed for the user by using an MDM solution. What are the settings for it?
Can anybody help out here?
BR
Hello slang,
How are you suppressing this pop up with your MDM?
Our MDM solution is Jamf. Here it is described for Microsoft Defender and works fine:
And the same I want to have for the checkpoint client
As this is EA code, we might not have these settings available yet.
Adding @Lior_Arzi @AndreiR
I tried all possible settings with kernel extensions and system extensions, but I was not able to suppress this window.
So what do you suggest here @PhoneBoy ? I guess all of your clients have this now together with Big Sur and updating to 84.30
BR
Hi! I don't want to use the content filtering so I deleted the Check Point Firewall app in the Applications folder. I don't have a popup and the VPN is working properly.
Have a good day!
It should be enough to add the team identifier in Kernel Extension Policy MDM payload settings for Apple devices
See Kernel Extension Policy MDM payload settings for Apple devices
https://support.apple.com/en-gb/guide/mdm/mdm88f99b98a/1/web/1.0
Developer ID Application: Check Point Software Technologies (TZ3UEPFYKD)
See Custom MDM payload settings for Apple devices https://support.apple.com/en-gb/guide/mdm/mdm38df53c2a/1/web/1.0
/Library/Application Support/Checkpoint/Capsule Docs/CapsuleDocsAgent.app/Contents/MacOS/CapsuleDocsAgent
/Library/Application Support/Checkpoint/Capsule Docs/CapsuleDocsDaemon
/Library/Application Support/Checkpoint/Threat Emulation/cpted
/Library/Application Support/Checkpoint/Anti Ransomware/cpard
/Library/Application Support/Checkpoint/Forensics/cpefrd
/Library/Application Support/Checkpoint/Endpoint Security/cpmed
/Library/Application Support/Checkpoint/Endpoint Security/cpamd
/Applications/Check Point/cpmedApp.app
/Applications/Check Point/cpamdApp.app
/Applications/Check Point/cpdaApp.app
/Applications/Check Point/efr-mon-epsec.app
@PhoneBoy Apple is moving away from kernel extensions to system extensions. Is checkpoint doing the same and moving away from kernel extensions? I already have the kernel extension with the team identifier in place for previous versions of macOS. I'm still getting the popup.
I presume we are but don't know the precise timeline here.
Yes, for some blades this is already implemented, such as Firewall. On BigSur, the Firewall blade in the latest client uses a system extension.
Also, the EP client has already moved away from the old kexts for most of the blades, using new frameworks instead, such as the Endpoint Security framework.
Hello,
Endpoint Security VPN for Macs version 84.30 has been release. Does anyone have a way to suppress the "Checkpoint Firewall Filter" Would Like to Filter Network Content prompt besides deleting the Checkpoint Firewall app?
As I've posted previously, the Mac VPN client includes a firewall as a mandatory component.
Pretty sure this is the first time it's even been possible to remove it.
Hello @PhoneBoy ,
I am not looking to remove it. I'm looking for a way to allow this component to run without requiring the user to click "Allow" when it prompts. Usually with an MDM I can push a configuration profile to allow this without any users interaction. Is there a way to do this?
@PhoneBoy Can you share where you wrote about removing the Endpoint Security Firewall.
We already deploy a firewall and have it configured. We just use Checkpoint for the VPN
I didn't write anything about it.
The comment is made in this thread by uluss99 above.
I have not personally verified his claim.
If you have Jamf you can put "Check Point Firewall.app" to restricted software and it won't bother you anymore. VPN still works.
And check point please make possible to install only VPN like in Windows machines.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
User | Count |
---|---|
4 | |
4 | |
3 | |
1 | |
1 | |
1 | |
1 | |
1 |
Tue 16 Sep 2025 @ 02:00 PM (EDT)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - AmericasWed 17 Sep 2025 @ 04:00 PM (AEST)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - APACWed 17 Sep 2025 @ 03:00 PM (CEST)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - EMEAThu 18 Sep 2025 @ 03:00 PM (CEST)
Bridge the Unmanaged Device Gap with Enterprise Browser - EMEAThu 18 Sep 2025 @ 02:00 PM (EDT)
Bridge the Unmanaged Device Gap with Enterprise Browser - AmericasTue 16 Sep 2025 @ 02:00 PM (EDT)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - AmericasWed 17 Sep 2025 @ 04:00 PM (AEST)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - APACWed 17 Sep 2025 @ 03:00 PM (CEST)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - EMEAThu 18 Sep 2025 @ 03:00 PM (CEST)
Bridge the Unmanaged Device Gap with Enterprise Browser - EMEAThu 18 Sep 2025 @ 02:00 PM (EDT)
Bridge the Unmanaged Device Gap with Enterprise Browser - AmericasAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY