- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Announcing Quantum R82.10!
Learn MoreOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
hi,
perhaps a dumb question:
There is a menu Shared Policies | Inspection settings
There are a lot of paramter which you can modify.
The comment shows:
The following settings are set according to gateway settings and installed via Access Policy installation.
Are these parameter relevant for IPS/Threat prevention blade only? (firewall and IPS blade enabled)
Or are they also relevant for access policy (only firewall blade enabled)
The help section
https://sc1.checkpoint.com/documents/R81.10/SmartConsole_OLH/EN/Topics-OLH/0H3yqvdWWDGUIa-i_DgWfw2.h...
is referring to IPS/ThreatPrevention only: Use this window to view Threat Prevention protections and their settings.
Thanks
Best Regards
No, these have been a part of IPS once, but now are core protections installed together with the access policy and working with IPS disabled. They include e.g. protocol parsing, deep inspection, VoIP (see for example: R81.10 VoIP Administration Guide - Configuring Inspection Settings in SmartConsole).
These settings are for Threat Prevention profiles and some additional related parameters. You can define multiple profiles and apply them to different populations of the Security Gateways.
No, these have been a part of IPS once, but now are core protections installed together with the access policy and working with IPS disabled. They include e.g. protocol parsing, deep inspection, VoIP (see for example: R81.10 VoIP Administration Guide - Configuring Inspection Settings in SmartConsole).
hi,
ok, that helps. So we will need check this section especially for 'TCP SYN Modified Retransmission' which we never saw an issue before.
Thanks. Best Regards
Do you currently experience a TCP SYN Modified Retransmission issue ?
hi, there is/was an issue and we stumbled over sk63160 which points to IPS....
Best Regards
@S_E_ Thats actually really good question mate. As Val said, you can always define more profiles, but default one is called "default" and there is also "recommended". If you look at what I pointed in below screenshot, hopefully it makes sense. If you want me to do any testing in R81.20 lab, happy to do so. Cheers.
Andy
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 22 | |
| 15 | |
| 11 | |
| 7 | |
| 6 | |
| 5 | |
| 4 | |
| 4 | |
| 4 | |
| 3 |
Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY