This website uses Cookies. Click Accept to agree to our website's cookie use as described in our Privacy Policy. Click Preferences to customize your cookie settings.
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
Selecting more than one gateway here (other than "Any" which means all gateways) is not allowed. To make this possible a nonexistent object type called "Gateway Group" would be needed; a usual network object group can't be selected here even if it only contains gateway/cluster objects. There is nothing stopping you from creating multiple identical exceptions and applying each of them to a separate single gateway/cluster however.
Also be aware of the following notes concerning Inspection Settings exceptions quoted from my IPS Immersion course:
◦ Inspection Settings Exceptions are specified separately from Threat Prevention Exceptions, so the main Threat Prevention Global exceptions DO NOT apply. ◦ One, some, or all Inspection Settings signatures can be specified in a single Inspection Setting Exception rule for an R80.10 gateway. For an R77.30 gateway, Inspection Settings Exceptions must be specified in the IPS layer under Threat Prevention. ◦ Each gateway has exactly one Inspection Settings Profile assigned to it.
Gateway Performance Optimization R81.20 Course now available at maxpowerfirewalls.com