- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello everyone,
the sk107166 "TLS1.2 Support Plan for Check Point Products" seems to be vallid and maintained (Last modified
2023-09-11).
I find the note that the SIC initialization still communicates via ssl v3. Is this really the case and if so, why?
Of course it is only the initialization, but I am afraid that this is a topic that I have to discuss with our internal audit department and would like to avoid this 😉
Regards,
I've spoken to R&D owner and SIC initialization uses TLS 1.2 in R81.10 and higher versions.
Thanks for the answer
I know the SIC communication, but my question refers explicitly to the SIC initialization
------
https://support.checkpoint.com/results/sk/sk107166
Notes:
The schedule can be subject to modifications. For most up-to-date information, revisit this page or subscribe to RSS feed (at the top).
Support for TLS 1.2 was integrated since Take 266 of R77.30 Jumbo Hotfix.
The SIC initialization still communicates over SSLv3.
For VSX Gateway, refer to sk112014 - "Cannot establish connection to SSL Network Extender gateway. Try to reconnect." error wh....
Before installing Take 266 and higher of R77.30 Jumbo Hotfix, make sure to back up all the current httpd.conf files:
[Expert@HostName:0]# find / -name httpd.conf -type f
If a connection from a SmartConsole computer to a Security Management Server / Domain Management Server must also be TLS 1.2, then an improved SmartConsole can be provided (otherwise, the communication will be TLS 1.0).
This requires Take 266 and higher of R77.30 Jumbo Hotfix to be installed on the Security Management Server / Multi-Domain Security Management Server.@Herr_O You are looking into the older SK, while @Tal_Paz-Fridman provided you with the updated information. Initialization is part of SIC, so sk178505 applies.
Now, if you need a stumped official response you could use for the audit, it is advisable to open a TAC ticket for 100% official answer.
I've spoken to R&D owner and SIC initialization uses TLS 1.2 in R81.10 and higher versions.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 12 | |
| 10 | |
| 9 | |
| 8 | |
| 6 | |
| 3 | |
| 2 | |
| 2 | |
| 2 | |
| 1 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY