- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
I don't understand how the 3-component architecture works and how the certification(SIC) process works?
There are three main pieces: Gateway, Management, and SmartConsole/API.
Gateways and Management run on physical appliances or virtual machines that run a purpose-built operating system.
SmartConsole runs on a Windows machine, but you can also use a web browser and/or REST API to manage many functions.
SIC (Secure Internal Communication) secures communication between all components (SmartConsole/API to Management, and Management/Gateway communication).
As gateways are onboarded to management, they are issued a certificate from the ICA, which is used to authenticate and encrypt all communications.
This is done through industry-standard TLS.
There are three main pieces: Gateway, Management, and SmartConsole/API.
Gateways and Management run on physical appliances or virtual machines that run a purpose-built operating system.
SmartConsole runs on a Windows machine, but you can also use a web browser and/or REST API to manage many functions.
SIC (Secure Internal Communication) secures communication between all components (SmartConsole/API to Management, and Management/Gateway communication).
As gateways are onboarded to management, they are issued a certificate from the ICA, which is used to authenticate and encrypt all communications.
This is done through industry-standard TLS.
Also when I deploy standalone how are the CPU resources shared, 50-50?
and Can the admin port assign data ports to access the admin? If so, can other ports be blocked from accessing the admin?
The resources are shared, but not exactly 50/50.
You can restrict access to the administrative functions, yes.
To add on top what @PhoneBoy said, I would ensure you allow all communication between mgmt and gateways.
Andy
You can use these commands to see the ICA database on the Security Management Server and the SIC trust state on the Security Gateway:
cpca_client lscert
cp_conf sic state
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 4 | |
| 2 | |
| 2 |
Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY