Creating an Account in the Check Point Portal
This topic provides an overview of the Check Point Portal and points to additional documentation for creating an account.
Customization in Playblocks
Playblocks provides flexible customization options to tailor automations according to your organization's needs.
Creating Automation from Blank
Creating an automation from blank allows you to build fully customized flows from scratch and tailor every step to your specific use case.
Log Trigger
Configure a Log Trigger to monitor logs, define conditions, and create example outputs for automation workflows.
Schedule Trigger
Configure a schedule trigger to run automation at recurring intervals. The task explains how to select the repetition frequency and create the trigger.
Managing Trigger
Learn how to manage a trigger by adding notifications, enrichments, conditions, or actions.
Notifications
Configure notification actions including Notify, Ask, and Open Ticket options. This task explains how to create and customize notification messages and ticket actions.
Alert Steps
Alert steps let an automation drive an incident through its full on-call lifecycle in PagerDuty and other alerting platforms behind the same vendor-neutral steps.
Trigger Alert
The Trigger Alert step opens a new incident in PagerDuty. If an open incident with the same Alert ID already exists, PagerDuty returns the existing incident and does not create a duplicate.
Get Alert
The Get Alert step reads the current state of an existing incident in PagerDuty.
Acknowledge Alert
The Acknowledge Alert step pauses escalation on an open incident in PagerDuty.
Add Note to Alert
The Add Note to Alert step posts a free-text note to an existing incident in PagerDuty.
Resolve Alert
The Resolve Alert step closes an incident in PagerDuty.
Enrichments
Use enrichment steps to query the Reputation Service for IP addresses, URLs, or file hashes from previous step outputs. The enrichments provide threat intelligence data about the selected value.
Conditions
Use conditions to create branches in the automation flow based on logical evaluations. This task explains how to configure condition expressions and operations.
Actions
Action steps perform operational tasks such as running automations, managing indicators, and sending external API requests.
Run Automation
Run an automation action and configure automation parameters and inputs for supported automation types.
Add to List
Use the Add to List procedure to add IPs, URLs, domains, or hashes to a list with optional conditions and duration settings.
Create IoC Management Indicators
Create IoC Management indicators by specifying indicator values and expiration settings in the Create IoC Management Indicators window.
API Request
Configure an API Request action in an automation and define the example output structure for API responses.
AI Request
Use the AI Request step to send a prompt to a connected AI provider and use the model's response in subsequent steps.
Isolate Endpoint Device
Configure and create an isolation action for an endpoint device. Specify the endpoint product, device details, isolation duration, and reason for isolation.
Scan Endpoint Security Device
Scan an Endpoint Security device by configuring target identification, scan options, and scheduling parameters.
Exporting/Importing Automation
You can export and import an automation in JSON format. This task explains how to export an automation and import an automation file.
Cloning Existing Automation
You can clone an existing automation for editing and customization. This task explains how to clone an automation from the card view and table view.
Creating Automation by AI Copilot
AI Copilot allows you to create custom Playblocks automations using natural language prompts. This topic explains the supported capabilities, limitations, and steps to create an automation.
Automation Capabilities
This topic describes the different automation capability types, their use cases, abilities, and editing restrictions.
Replace Trigger
Replace Trigger allows you to change the current trigger type in your automation to a different one. This topic explains how to replace a trigger, configure the new trigger, and resolve validation errors.
ServiceNow Ticketing
Configure a ServiceNow Ticketing connector to receive incident details and responsive actions through ServiceNow Ticketing.
Freshdesk Ticketing
The Freshdesk Ticketing connector enables Playblocks to create, retrieve, and close tickets in Freshdesk.
AI Connectors
This topic describes how to connect an AI provider to Playblocks and how to use the AI Request step in custom automations.
Appendix I - Creating a PagerDuty General Access Key
This appendix describes the one-time setup in PagerDuty that the PagerDuty Alerting connector requires.
Appendix J - Obtaining a Freshdesk API Key
The Freshdesk Ticketing connector uses a Freshdesk API key to authenticate requests.