- Products
- Learn
- Local User Groups
- Partners
- More
The State of Ransomware Q1 2026
Key Trends and Their Impact
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
CheckMates Go:
CheckMates Fest
Let me add here what you should STOP using.
1. Install-on field on rules.
Create a separate policy for each security gateway/cluster.
2. Manual NAT-rules
Use manual NAT only for complex NAT where you will have to translate source and destination or port.
In all other cases use automatic NAT. It keeps your environment a lot less complex.
3. Rules that have tens of objects
Consolidate rules when possible, use simple object groups (avoid nested groups though) and allow access based on identities instead of IP-addresses.
4. Large policies with no structure
Use unified policies with inline layers, use section headers and add a comment to each rule.
5. Ordered layers
Use unified policies rather than having a separate policy for every access control blade
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY