- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
I had customer ask me this last year and I could not find it in any admin guide either. Never opened case with TAC about it, but thats because they said it was just a question, not really a requirement. If you really need this info, I would contact endpoint support, thats probably your best bet.
Dear Lzm,
please review this part of the documentation, all push-operations we support at the moment are listed there:
Anti-Malware
Scan for malware - Run an Anti-Malware scan on the computer or computers, based on the configured settings.
Update malware signatures - Update malware signatures on the computer or computers, based on the configured settings.
Restore files from quarantine - Restores files from quarantine on the computer or computers, based on the configured settings.
Forensics and Remediation
Analyze by Indicator - Manually triggers collection of forensics data for an endpoint that accesses or executes the indicator. The indicator can be a URL, an IP, a path, a file name or an MD5.
File Remediation - quarantines malicious files and remediate them as necessary.
Release Computer - Remove device from isolation. This action can be applied on one or more devices.
Shut down computer - Shut down the computer or computers based on the configured settings.
Restart computer - Restart the computer or computers based on the configured settings.
Collect client logs - Collect logs from the computer or computers based on the configured settings. Logs are stored in a shared folder on the client computer.
Repair client - Repair the Endpoint Security client installation. This requires a computer restart.
Deploy New Agents - You can install the Initial Client remotely without third party tools such as Microsoft System Center Configuration Manager (SCCM) or Intune. The Push Operation mechanism extends to devices that do not have the Initial Client installed yet.
Uninstall Client - Uninstall your Endpoint Security client remotely on the selected devices. This feature is supported for E84.30 client and above.
Best regards,
Igor
I am not 100% sure, but I think some features are only available via Web-based management.
Hey Igor,
Is this the only link of information CP has for Push Operations?
-Des
Collect client logs - Collect logs from the computer or computers based on the configured settings. Logs are stored in a shared folder on the client computer.
A thing to point out here is that the operation in this form is (honestly) absolutely useless. But since R80.40 I believe you're able to instruct the client to push the logs to an FTP or SFTP server of your choice. Which is absolutely amazing.
Also I've never really been able to get the "Restore from Quarantine" push operation to work; a tad more in-depth guide towards using that might be nice. Usually just end up using the RemediationManagerUI installed on the EndPoint.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 8 | |
| 4 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY