Configuring the CloudGuard Object in SmartConsole

This section procedures for defining a gateway in SmartConsole. Depending on requirements, you need to create a gateway either in SmartConsole Wizard mode or in SmartConsole Classic.

Note - For the cluster to work in SDWAN R80.20.5, you must add a rule to the Check Point Security Policy that permits SNMP traffic.

Creating a Network Object to Represent the Gateway Workflow-Wizard

To add a CloudGuard Edge object in SmartConsole: Wizard Mode:

  1. Go to SmartConsole > Object Explorer > More Object Types > Network Objects > Gateways & Servers > New Gateway.

  2. Select Wizard Mode. The General Properties window opens.

    1. In the General Properties tab, enter the requested information:

      Gateway name:

      The name of the VNF gateway

      Gateway platform:

      CloudGuard Edge appliances only

      Gateway IP address:

      Enter the IP Address

    2. Click Next.

  3. In the Trusted Communication tab, select the following:

    1. In Authentication, select Initiate trusted communication securely by using a one-time-password.

    2. Enter the SIC configured in the First Time Configuration Wizard.

    3. To authenticate a successfully deployed CloudGuard Edge:

      • In Trusted communication, select Initiate trusted communication now.

    4. To authenticate CloudGuard Edge using Auto Join:

      • In Trusted communication, select Initiate trusted communication automatically when the Gateway connects to the Security Management Server for the first time.

      Note - After Auto Join is deployed, it automatically connects to the gateway.

  4. Click Connect > Next.

  5. In Blade Activation, select the blades to activate > Next.

  6. In Blade Configuration, unselect the NAT checkbox, and then click Next > Finish.

  7. To push the configuration, click Install Policy.

Creating a Network Object to Represent the Gateway Workflow: Classic Mode

To add a CloudGuard object in SmartConsole – Classic Mode:

  1. Go to SmartConsole > Object Explorer > More Object Types > Network Objects > Gateways & Servers > New Gateway.

  2. Select Classic Mode.

  3. In the General Properties tab, enter the requested information:

    Gateway name:

    The name of the VNF gateway

    Gateway platform:

    CloudGuard Edge appliances only

    Gateway IP address:

    Enter the VNF IP Address

  4. In the Secure Internal Communication field, click Communication.

    1. In Authentication, select Initiate trusted communication securely by using a one-time-password.

    2. Enter the SIC configured in the First Time Configuration Wizard setup.

    3. Click OK.

  5. In the Network Security field, select the blades to be activated, and then click OK.

  6. To push the configuration, click Install Policy.