Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 

Policy Insights Early Availability

OhadYehezkel
Employee
Employee
7 7 1,297

Features

  • Narrowing down wide or 'Any' rules and removing unused objects reduce exposure levels and enhance security
  • Replacing several objects with a single one to simpler policy manageability
  • Automate the policy cleanup process
  • Assist with rule base overview for streamlined compliance process

Prerequisites

  • Minimum, management R81.20 with JHF 99 or R82
  • Connection to Check Point Infinity Portal with EU or US account

How Can I Join?

  • Limited spots are available
  • Send ohady@checkpoint.com:
    • Tenant ID
    • Tenant region
    • CKs of each of your managements and log servers
  • Policy insights would be enabled for your account, and a card would be visible in Smart Console under Infinity Services section
  • Switch the card to “On”
  • Under Security Policies there is “Insights” button, press it and review the insights

Questions and feedback?

Hit me via email

Already using it?

We would love to hear your feedback! Please fill our questionnaire here – https://forms.gle/drC8oCHsQFNZJvyC7

7 Comments
OhadYehezkel
Employee
Employee

Card.png

Check Policy Insights card to change activation status

Rulebase review.png

Decide between two ways to check your suggestion when clicking "Insights" button

Insight per rule.png

Check your suggestions for dedicated rule

Insights overview remove.png

Check all your "Remove unused object" suggestions available in the current Rulebase and Apply, Decline or Decide Later for the suggestions

Insights overview replace.png

Check all your "Replace existing object" suggestions

Decide later.png

Review the suggestions you added to Decide Later

Decline.png

Review the Declined suggestions

the_rock
Legend
Legend

Hey @OhadYehezkel Is there a demo people can see for this that would illustrate exactly how it works?

Andy

OhadYehezkel
Employee
Employee

@Hi @the_rock,

You can check Check Point Demo Point

 

demo point.png

Choose "Policy Insights" 

the_rock
Legend
Legend

Thanks! I did that, but does not show up in smart console in demo...any idea?

Andy

the_rock
Legend
Legend

@OhadYehezkel Thanks a lot for your direct message, got it now, appreciate it!

Andy

Bob_Zimmerman
Authority
Authority

It would be useful to have the ability to add a comment to declined suggestions explaining the reason. For example, I have some rules which are only used for about one week per year (tax time), so Policy Insights will think they're unused for about 3/4 of the year. I would like to be able to explain that as the reason for declining the suggestion so when someone reviews the declined suggestions, they'll have quick context for why the suggestion was declined.

Separately, it's a little unfortunate the name partially collides with the 'insights' tool for checking the state of Maestro and ElasticXL clusters.

danielcoh
Employee
Employee

@Bob_Zimmerman  - we are working on adding reason for declining and deciding later a suggestion. This capability would be added automatically (does not required junbo)

 

With regards to naming collision - I'll check internally about it.

 

Labels