- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hi Guys, I just want to clarify about pushing policies in the VS and VSX gateways. I have 3 VS inside the 2x VSX gateways configured in cluster. Technically, we will be having VS0, VS1, VS2, and VS3, what I did is that I created 3 policy packages and I one VS in each policy packages in using the policy target.
In addition, we all know that there is also a policy package for the VSX gateway itself that was created automatically when we register the VSX gateways to the Smart Console.
My question now is, is my setup correct or do I need to include the VSX gateways to each policy package in addition to each VS (i.e. The target for Policy_Pack1 are VS1 and VS0).
Thank you so much.
Both are possible:
A small policy for VS0 and different policies for all other VS systems.
Or one policy for all VS gateways. In this case you can control the rules via "install on" in the ruleset.
It is correct.
You can use a separate policy pack for each vs. For vs0 only basic communication is allowed to reach the gw.
@HeikoAnkenbrand , thanks for the feedback.
What do you mean it is correct? Correct meaning I need to include the VSX gateways to the policy package of each VS? Thanks
@CyberBreaker , There is no need to add the VSX-gateways itself to the other policy packages.
As @HeikoAnkenbrand mentioned, you should have a small policy only to manage the VSX gateways. And your other policies are for your virtual systems.
Wolfgang
Both are possible:
A small policy for VS0 and different policies for all other VS systems.
Or one policy for all VS gateways. In this case you can control the rules via "install on" in the ruleset.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 20 | |
| 19 | |
| 19 | |
| 8 | |
| 7 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 3 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY