- CheckMates
- :
- Products
- :
- Harmony
- :
- Endpoint
- :
- Sandblast Agent using TE Appliance (Solution)
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Sandblast Agent using TE Appliance (Solution)
Dear All,
Question regarding Sandblast Agent
Setup:
Endpoint Server
OS: GAIA R77.30 with 143 hotfix and R77.30 Adds on package installed.
Blade Enabled:
1.Sandblast Agent Anti-Ransomware, behavioral guard and Forensics
2.Sandblast Agent Anti-Bot
3.Sandblast Agent Threat extraction and emulation
We use TE appliance for extraction and emulation (Local Emulation).
As per my understanding if I am downloading some file that may be exe, pdf, docs, etc then that file goes to TE appliance for emulation and extraction.
Question: Now suppose if I am transferring any malicious FILE through Pendrive or any external storage device then, can that particular file that I copy to my PC where sandblast agent is already installed, can it send to the TE appliance for extraction and emulation.
NOTE: We are not using Checkpoint Antimalware Balde.
Thank You
Regards
Chinmaya Naik
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes, see sk116381: SandBlast Agent Threat Emulation Appliance certificates installation
Also SandBlast Agent for Browsers can perform SandBlast Threat Emulation and SandBlast Threat Extraction on:
- Check Point Threat Cloud
- Security Gateway or TE Appliance running R77.30 with Jumbo Hotfix. Instructions are available at sk113599.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes, see sk116381: SandBlast Agent Threat Emulation Appliance certificates installation
Also SandBlast Agent for Browsers can perform SandBlast Threat Emulation and SandBlast Threat Extraction on:
- Check Point Threat Cloud
- Security Gateway or TE Appliance running R77.30 with Jumbo Hotfix. Instructions are available at sk113599.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thank You Sir
It's really a good feature I did the lab also and its work.
Thank You
