- Products
- Learn
- Local User Groups
- Partners
- More
Policy Insights and Policy Auditor in Action
19 November @ 5pm CET / 11am ET
Access Control and Threat Prevention Best Practices
Watch HereOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
I got the queries, if it is possible to implement a policy which block the client from downloading the executable(exe) files in checkpoint.
Our client were using fortinet 200D where we found such policy. So, we need to make that same policy to checkpoint.
Regards,
Sagar Manandhar
Refer to the following SK: How to block any File Type Family to Anti-Virus scan in R77.XX
These instructions should also apply for R80.x as well.
Refer to the following SK: How to block any File Type Family to Anti-Virus scan in R77.XX
These instructions should also apply for R80.x as well.
i did it. but it is not working. ?
from what i know AV blade check only file extension and not the MimeType of the file
How does customers add this specific the file type families. is it possible for customer
yes.


Starting with R80.10 this could also be achieved by using the new Content Awareness features. So there would be no need for an Anti-Virus license (NGTP bundle), but an NGFW bundle would be sufficient.
simply create this rule:

How to enable Content Awareness:
1. Make sure you have an R80.10 Gateway
2. Edit the gateway and enable the Content Awareness blade.
3. Edit the current security policy layer and enable the Content Awareness blade.
4. The new "Content" column will show up in the rulebase.
I wish I could mark both our solutions as correct in Jive ![]()
For my own clarity, this seems to work with both HTTP and HTTPS in my lab. I am not doing HTTPS inspection, can I ask how this works with HTTPS? My assumption was that I'd still be able to download an EXE, but I was wrong. I don't know too much about Content Awareness possibilities, but it is intriguing.
Yeah. So if you have lower version than R80.10. You can achieve it by Antivirus blade as well as DLP blade.
Guys,
correct me If I am wrong, for activation Content Awareness blade, I need DLP license which is not part of NGFW nor NGTP/TX bundle.
Wrong! NGFW is enough, see here:
Trying to configure a Content Awareness rule for this scenario.
I have an inline rule configured for web browsing (rule 17):

I have more detailed inline rules below this (rule 17.x)
I wish to create content awareness checks at the lower levels of the inline rule but the Content column is greyed out?
R80.20 SM Admin Guide shows that this should be possible.

Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 23 | |
| 10 | |
| 8 | |
| 6 | |
| 4 | |
| 4 | |
| 3 | |
| 3 | |
| 3 | |
| 2 |
Thu 06 Nov 2025 @ 10:00 AM (CET)
CheckMates Live BeLux: Get to Know Veriti – What It Is, What It Does, and Why It MattersThu 06 Nov 2025 @ 10:00 AM (CET)
CheckMates Live BeLux: Get to Know Veriti – What It Is, What It Does, and Why It MattersTue 11 Nov 2025 @ 10:00 AM (CET)
Your First Response: Immediate Actions for Cyber Incident Containment- EMEAThu 20 Nov 2025 @ 05:00 PM (CET)
Hacking LLM Applications: latest research and insights from our LLM pen testing projects - AMERThu 13 Nov 2025 @ 10:00 AM (CET)
Cloud Architect Series - Guarding Generative AI: Next-Gen Application Security with CloudGuard WAFTue 11 Nov 2025 @ 06:00 PM (COT)
San Pedro Sula: Risk Management al Horno: ERM, TEM & Pizza NightTue 11 Nov 2025 @ 06:00 PM (COT)
San Pedro Sula: Risk Management al Horno: ERM, TEM & Pizza NightAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY