- Products
- Learn
- Local User Groups
- Partners
-
More
Celebrate the New Year
With CheckMates!
Value of Security
Vendor Self-Awareness
Join Us for CPX 360
23-24 February 2021
Important certificate update to CloudGuard Controller, CME,
and Azure HA Security Gateways
How to Remediate Endpoint & VPN
Issues (in versions E81.10 or earlier)
Mobile Security
Buyer's Guide Out Now
Important! R80 and R80.10
End Of Support around the corner (May 2021)
Does anyone see the value to having a VSX instance of Checkpoint for URL filtering/Application control and one instance for traditional Edge Firewall activities? Since the Edge firewall have few changes and URL filtering could have multiple changes within a week or day?
Has anyone done anything similar or have thought to configure it this way?
I probably would stick with one. It would be more efficient CPU resource wise. It didn't make much difference if you push policy once a week or once day as long as platform is not seriously underpowered. Just need to plan CoreXL adequately
If you have a need to maintain separation of duties above and beyond what R80.10 allows, it might make sense to use VSX.
That said you might also need multi-domain as well
About CheckMates
Learn Check Point
Advanced Learning
WELCOME TO THE FUTURE OF CYBER SECURITY