- Products
- Learn
- Local User Groups
- Partners
- More
What's New in R82.10?
Watch HereWhen the Agents Attack
A Live Look at Agentic Exposure Validation
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
CheckMates Go:
CheckMates Fest
I want to setup our Quantum Spark like a regular Gaia firewall. I have disabled the WAN and DMZ interfaces during setup. I now have LAN Switch 1 with all of my Ge ports listed. I cannot set an IP on any interface unless I set the Interface to 'Separate Network'.
Does 'the separate network' interface essentially accomplish what I want? Plain interfaces that I can configure as I wish. Or am I missing something?
As I do not need LAN Switch 1, can I just assign all interfaces to 'separate network' and do away with LAN Switch 1?
Yes, "separate network" is exactly what you're after here.
Yes, you can delete the LAN1 Switch to just use LAN1 port as an individual interface.
If LAN1_Switch already has an IP configured and delete it, the originally configured IP will be assigned to LAN1.
Afterwards you can use the IP that's already configured, or you can change it accordingly to your topology.
Note, Quantum Spark appliances will need at least 1 Internet connection configured for it to be defined as an "External" interface to reach outside.
Yes, "separate network" is exactly what you're after here.
Awesome! Thanks for the reply.
I tried to assign Ge1 to 'separate network' but it complained that it was the pivot port for Lan Switch 1. Can I just delete Lan Switch 1 all together and then use Ge1?
I've never tried to do that and don't know if it's possible.
Even so, if you've assigned the other ports to "Separate Network" then there is no actual reason you need to delete it.
Yes, you can delete the LAN1 Switch to just use LAN1 port as an individual interface.
If LAN1_Switch already has an IP configured and delete it, the originally configured IP will be assigned to LAN1.
Afterwards you can use the IP that's already configured, or you can change it accordingly to your topology.
Note, Quantum Spark appliances will need at least 1 Internet connection configured for it to be defined as an "External" interface to reach outside.
Thanks Tom
When you say "Quantum Spark appliances will need at least 1 Internet connection configured for it to be defined as an "External" interface to reach outside", isn't that done typically done via the topology config in the policy on the object?
Note that I have not gotten to the policy stage yet on the Quantum Sparks. I'm speaking to your response based on what I do in Smartconsole when I create/add a firewall object and change one interface in the topo to be external (Internet). Is it different on a locally managed Spark?
Yes, for centrally managed Spark, if a internet connection is configured on the Spark device, than it should automatically be assigned as a External zone when fetching the topology in Smart Console.
The different part from Main Train is that the default gateway can only be configured in the Internet Connection and not the routing table.
I mentioned this because there "is" a way to configure default route in the routing table without configuring a internet connection on Spark, but I reckon that won't be officially supported in terms of topology and inspection. (Configuring Spark LAN interface as external interface).
You might want to consult with TAC about this if this is what you're trying to achieve.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 3 | |
| 3 | |
| 2 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 | |
| 1 |
Thu 25 Jun 2026 @ 10:00 AM (PDT)
AI Security Masters E10: READY OR NOT: Securing the AI Enterprise 2/5 - AI Red TeamingThu 02 Jul 2026 @ 06:00 PM (CST)
Revolucionando la Seguridad con IA Generativa: Prevención Inteligente en Tiempo RealThu 09 Jul 2026 @ 11:00 AM (CEST)
The Cloud Architects Series: Check Point Edge Protection SD-WAN & SASETue 14 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E11: READY OR NOT: Securing the AI Enterprise 3/5 - AI Workforce SecurityThu 30 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E12: READY OR NOT: Securing the AI Enterprise 4/5 - AI GatewayThu 20 Aug 2026 @ 10:00 AM (PDT)
AI Security Masters E13: READY OR NOT: Securing the AI Ent 5/5 - AI Research & Threat LandscapeThu 25 Jun 2026 @ 10:00 AM (PDT)
AI Security Masters E10: READY OR NOT: Securing the AI Enterprise 2/5 - AI Red TeamingTue 14 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E11: READY OR NOT: Securing the AI Enterprise 3/5 - AI Workforce SecurityThu 30 Jul 2026 @ 10:00 AM (PDT)
AI Security Masters E12: READY OR NOT: Securing the AI Enterprise 4/5 - AI GatewayThu 20 Aug 2026 @ 10:00 AM (PDT)
AI Security Masters E13: READY OR NOT: Securing the AI Ent 5/5 - AI Research & Threat LandscapeThu 02 Jul 2026 @ 06:00 PM (CST)
Revolucionando la Seguridad con IA Generativa: Prevención Inteligente en Tiempo RealAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY