Step 1: Add Groups
After activating Google Workspace, Email Security automatically creates the following user groups.
You can view these user groups in the Directory > Groups in your Google Admin Console.
-
check_point_inline_policy
-
check_point_inline_outgoing_policy
-
check_point_monitor_policy
-
check_point_monitor_outgoing_policy
If you use GCDS (Google Cloud Directory Sync) to synchronize your user groups on-premises and in the cloud, the synchronization triggers the deletion of these Check Point groups. Though this will not impact the email delivery, Email Security cannot scan the emails, and no security events get generated.
Before activating Google Workspace, you must create exclusion rules for these user groups. Select the exclusion type as Group Email Address, match type as Exact Match, and the group email address should be in the groupname@[domain] format.
For example, the group email addresses should be acheck_point_inline_policy@mycompany.com and check_point_monitor_policy@mycompany.com, where mycompany is the name of your company.
If you have activated Google Workspace without creating exclusion rules, contact Check Point Support.