- Products
- Learn
- Local User Groups
- Partners
- More
Policy Insights and Policy Auditor in Action
19 November @ 5pm CET / 11am ET
Access Control and Threat Prevention Best Practices
Watch HereOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Upgraded our management server to 81.10 , pushed policy to test if all ok and all was ok.
Then took a small office and upgraded the 1570 appliance to 81.10 and tried to push policy.
Standard policy was ok but Threat Prevention fails miserably .
Gateway: DCUK-xxxx
Policy: Standard
Status: Failed
- No profile defined on GW DCUK-xxxx
- gen_amw_rulebase_tables: gen_gw_profiles_set failed
- Operation was unsuccessful.
--------------------------------------------------------------------------------
I tested the solution suggested here on sk165935 but it does not work or I do not understand the article correctly ..
I am a bit uncertain of this statement "Assign the IPS profile on the relevant Security Gateway" ... I can only assign a profile on the GW general properties and in this case I can only assign "Custom" ... as Autonomous is not supported by 1500 series.
Am I missing something ?
Well , mistery SOLVED.
After upgrading to 81.10 , the respective gateway was automatically REMOVED from my IPS / Threat prevention policy ????
I just upgraded another one and I noticed that the gateway was removed from the IPS policy after upgrade ?
Pushed policy ... fail.
Checked the IPS / Threat prevention policies and the gateway was NOT on any policy.
Added the gateway to the policy again , pushed policy and all went fine.
I have a policy for the small appliances and the next upgraded gateway vanished from the targets for that policy ... so no wonder the management server came and told me "No profile defined on GW" .. as there was no policy defined for that gateway so there was nothing to push..
I guess this can be defined as a Bug ? Why should a gateway remove itself from the policy after upgrade without any warnings ?
Yes, Autonomous Threat Prevention is not supported on SMB appliances.
"IPS Profile" only applies to pre-R80 gateways, for everything else not using ATP, it will depend on the Threat Prevention > Custom Settings rules.
What precise rules are there?
Screenshots (with sensitive details redacted) will help.
Well, sk165935 does not say to much regarding the IPS profile and gateway type so I was kind confused.
I have also tried to remove the affected GW from the IPS / Threat Prevention rules and follow the SK165935 but this did not help either.
Is this Gateway running R81.10.07 (996001397) or other version/build?
Gateway runing Version: R81.10 (996000575)
Well , mistery SOLVED.
After upgrading to 81.10 , the respective gateway was automatically REMOVED from my IPS / Threat prevention policy ????
I just upgraded another one and I noticed that the gateway was removed from the IPS policy after upgrade ?
Pushed policy ... fail.
Checked the IPS / Threat prevention policies and the gateway was NOT on any policy.
Added the gateway to the policy again , pushed policy and all went fine.
I have a policy for the small appliances and the next upgraded gateway vanished from the targets for that policy ... so no wonder the management server came and told me "No profile defined on GW" .. as there was no policy defined for that gateway so there was nothing to push..
I guess this can be defined as a Bug ? Why should a gateway remove itself from the policy after upgrade without any warnings ?
yes sounds like a bug. Do you have a TAC case as a reference?
No , no TAC case for this, we work with a checkpoint partner which did not open a TAC case I believe.
Please ask them to report this to TAC, this is the only way to get it fixed.
Will do , thanks.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 42 | |
| 21 | |
| 10 | |
| 8 | |
| 7 | |
| 7 | |
| 5 | |
| 5 | |
| 5 | |
| 4 |
Thu 20 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERThu 20 Nov 2025 @ 10:00 AM (CST)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - EMEAWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchThu 20 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERThu 20 Nov 2025 @ 10:00 AM (CST)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - EMEAThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY