- Products
- Learn
- Local User Groups
- Partners
- More
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Improve Your Security Posture with
Threat Prevention and Policy Insights
Overlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
How is the severity and confidence assigned to all blades for Harmony Endpoint(Anti Malware/Anti Bot /URL Filtering/ Anti Ransomware/ Behavioral Guard / Threat Emulation / Anti Exploit/Firewall / Application Control/Compliance ).?
I found sk116254 but just regarding information of Quantum IPS /AV/AB.
And I found almost the same question in the Checkmates thread. However, the result ends with the technical team contacting the questioner.
It would be best to have an SK reference all blades/protections present in Harmony Endpoint. Many customers ask me about this and are not very convinced when I point to an SK that is focused on another product or protection not present in HE.
I assume you’re referring to this thread: https://community.checkpoint.com/t5/Endpoint/Severity-and-Confidence-Levels-for-Security-Incidents/m...
Like I said in that thread, the guidelines for IPS also generally apply for Harmony Endpoint.
@Guy_Avnet can we produce something similar to sk116254 but geared at Harmony Endpoint?
Thank you for your reply.
I wanted to check the URL and see the severity details.
Here's what I want to know:
For example, if severity is critical, under what conditions does it occur?
Again, the guidance in sk116254 applies here.
That means the URL has something on it that generally involves remote code execution, is widely exploited, has no patch, is in wide use in Enterprises, etc.
Thanks for your reply.
And I'm sorry for the late reply.
The SK is written "Severity is currently only set to distinguish between adware (assigned low severity) and malware (assigned medium or high severity). "
The harmony EN log also lists the severity of zero phishing blades and smart event clients.
I don't think there will be adware in the "Smart Event Client", but it will show a medium severity.
In addition, the content of events that occur with a critical severity in the "Endpoint Compliance Blade" includes signature update failures and so on.I don't think everything is malware or adware.
Is there a document explaining the severity of the harmony EN log?
Specifically, no.
In general, the logs should comply with that SK, which now specifically mentions Harmony Endpoint.
There is probably a few cases where it doesn't exactly match what it says there.
For that, I recommend a TAC case.
I opened a new tack case.
Thanks for your advice.
It would be best to have an SK reference all blades/protections present in Harmony Endpoint. Many customers ask me about this and are not very convinced when I point to an SK that is focused on another product or protection not present in HE.
Actually, Harmony Endpoint is mentioned as one of the products in the SK now (wasn't before).
If you have specific feedback about what you feel is missing there, I recommend leaving it in the SK.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 4 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Wed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY