Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 

Policy Audit Extension

Danny
MVP Platinum
MVP Platinum

🍿 Many checks already included
💬 Comment to have your own checks added

SmartConsole Extension to add Policy Audit, an extensible policy and objects auditing tool, to the right global pane.

Extension URL: https://dannyjung.de/policyaudit.json

Installation:
SmartConsole > Manage & Settings > Preferences > SmartConsole Extensions

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free

Disclaimer: Check Point does not provide maintenance services or technical or customer support for third party content provided on this Site, including in CheckMates Toolbox. See also our Third Party Software Disclaimer.




(4)
31 Replies

PhoneBoy
Admin
Admin

That looks useful!

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


the_rock
MVP Diamond
MVP Diamond

Wow  @Danny , AMAZING! Something I noticed, though not sure its cause I checked in R82.10 demo smart console, but I see below for stealth rule, mentions not covered for mgmt object, but odd.

Screenshot_1.png

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


0 Kudos

enex
Participant
Participant

This looks like an amazing tool to try.

Time to play and review.

 

Thanks Danny!

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


the_rock
MVP Diamond
MVP Diamond

Its brilliant! Even lets you choose different policy packages as well, so many awesome options.

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


Danny
MVP Platinum
MVP Platinum

@the_rock : All centrally managed gateways, even branch office gateways, should also protect connections to their central management. Also demo mode is not a good way to test this, because it's quite limited, i.e. details-level full is restricted.

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


the_rock
MVP Diamond
MVP Diamond

Makes sense, Danny.

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


0 Kudos

XavierBens
MVP Silver CHKP MVP Silver CHKP
MVP Silver CHKP

Très intéressant! Bravo Danny

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


murilomuinhos
Participant

Nice Danny! It´s a powerfull tool!

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


(1)

Julio_Carrillo
Explorer

That was a super cool addon in terms of cybersecurity assesments.

 

thank you

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


Edyspbrazil
Explorer

Very nice good idea!

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


HectorCoimbra
Explorer

That’s amazing, @Danny ! It will be extremely useful.

Many thanks!

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


Markus1634
Participant

Hi Danny,

one thing I noticed as an improvment:

An Any-Any Rule with Action "inner layer" should not be shown in my point of view. Rules within an layer should anyways.

Best,

Markus

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


the_rock
MVP Diamond
MVP Diamond

Never noticed that the other day Markus, but definitely logical suggestion, in my opinion.

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


0 Kudos

Danny
MVP Platinum
MVP Platinum

@Markus1634 : This is fixed now in version v1.1, so please try again.

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


Edyspbrazil
Explorer

Very nice tool congrats for sharing

 

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


sjni01
MVP
MVP

Wow, it's awesome!

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


ITTech
Explorer

Hi  Danny

 

I've tried with Smartconsole R81.20 Last take 81.20.9700.675, but not detect the policy and when I display the options appear the re-luck the smartconsole.

however, in r82.10 working fine!

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


0 Kudos

kamaladmire1
Contributor
Contributor

Really helpful for Policy review and Health Check..Amazing

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


_Val_
Admin
Admin

Danny, please don't forget to claim this for MVP points

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


0 Kudos

DP7
Participant

Hi Danny, this is really great. Love the tool so far. Quick question I was checking out the SSH service check, found a significant amount of old vs ssh_v2 usage. It says to use the replace option, where is that? I also see a commit button at the bottom, can you explain that for me ? 

Thanks
Doug

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


Danny
MVP Platinum
MVP Platinum

@DP7 : To replace ssh, run <Where Used>, then click on <Replace>, select ssh_version_2 as replacement, check <Objects> and <Policies> and click on <Replace>. Enjoy.

replace3.png

Commit mode just activates request-commit, so users can choose the review and commit every API request performed by the extension. Try it out. You can always switch back to auto mode.

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


0 Kudos

israelsc
Collaborator
Collaborator

Hey  @Danny ! Great contribution!
This is a very valuable extension that definitely helps a lot in identifying management improvements in firewalls.

I have a couple of questions:
-I know this may not be considered an official tool, but what exactly does the extension?

My previous question is to find out:
-How can I tell customers that the extension uses administrator credentials to run and does not expose or use sensitive information about the rules on an unknown external server?

-I

...;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


Danny
MVP Platinum
MVP Platinum

@israelsc:

Great questions — privacy and security are absolutely valid concerns when introducing any third-party tooling into a management environment, so let me walk through exactly how this extension works.

What does the extension actually do?

This Policy Audit extension consists of just two files: a JSON manifest and a single HTML file. There is no backend, no installer, no service, and no external dependency. Once loaded, it runs entirely inside SmartConsole itself — the

...;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


0 Kudos

Anuka136510
Explorer

Thank you this danny. It looks amazing to use I am currenly testing it.

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


Amit139278
Explorer

Well done mate! 

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


simonemantovani
Collaborator

Great extension ... very usefull ... great job ... just a question, I'm using the extension with Smartconsole R81.20, if I check the Zero-hit rules, if I press the button "go to " nothing happens, is it right? A part from this I confirm that the extension is great.

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


0 Kudos

Danny
MVP Platinum
MVP Platinum

@simonemantovani: I'm glad that you find it useful. The <Go to> button sometimes take a bit. I suggest to navigate to the 'Security Policies' menu in SmartConsole and then press the <Go to> button, to help it to navigate to the selected rule.

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


0 Kudos

Lucas_Garcia
Employee
Employee

Great tool for all customers and partners !!! one of the "must to have" extensions!!!  👏 👏

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


(1)

jeka
Explorer

Hi, I tried the extension and it is excellent and very useful. Thank you very much for the effort.
What I noticed is that the GO TO button does not navigate to the relevant rule.

;
TO ACCESS CHECKMATES TOOLBOX it's simple and free


0 Kudos