1. Log in to Check Point Infinity Portal.

  2. Click the top left Menu > in the section Quantum, click SD-WAN.

    The SD-WAN Policy opens.

    #

    Name

    Source

    Destination

    Services & Applications

    Behavior

    1

    ...

    ...

    ...

    ...

    ...

    2

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

  3. From the top toolbar, create a new rule.

  4. Optional: In the Name column of the rule, click and enter the applicable text.

  5. In the Source column of the rule, click the (+) icon > select the applicable asset objects > click OK.

    See Objects Supported in SD-WAN Policy.

  6. In the Destination column of the rule, click the (+) icon > select the applicable asset objects > click OK.

    See Objects Supported in SD-WAN Policy.

    Best Practice - Use Updatable Objects in the "Destination" column of the SD-WAN Policy. This allows matching of application connections on the first packet and most accurate traffic steering.

  7. In the Services & Applications column of the rule, click the (+) icon > click Services or Applications > select the applicable objects > click OK.

    See Objects Supported in SD-WAN Policy.

  8. In the Behavior column of the rule, click the (+) icon > select the applicable Steering Behavior object > click OK.

    See Configuring Steering Behavior.

    Note - You can select only one Steering Behavior object in a rule. If you select a different object, then it replaces the current object.

  9. In the Enforcement column of the rule, click the (+) icon > select the applicable profile objects > click OK.

    Note - Select the profile you created in Infinity Portal:

  10. From the top toolbar, click Publish to save the changes.

  11. From the top toolbar, click Enforce to apply the changes.

    The orange frame on this button means there are changes that are not enforced.

    In the popup window that opens, click Publish & Enforce Policy.

Configuring SD-WAN Policy

Important - If you did not to use the SD-WAN Wizard during the initial deployment, then you must configure the required settings manually.

Configuring SD-WAN Policy

  1. Log in to Check Point Infinity Portal.

  2. Click the top left Menu > in the section Quantum, click SD-WAN.

    The SD-WAN Policy opens.

    #

    Name

    Source

    Destination

    Services & Applications

    Behavior

    1

    ...

    ...

    ...

    ...

    ...

    2

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

    ...

  3. From the top toolbar, create a new rule.

  4. Optional: In the Name column of the rule, click and enter the applicable text.

  5. In the Source column of the rule, click the (+) icon > select the applicable asset objects > click OK.

    See Objects Supported in SD-WAN Policy.

  6. In the Destination column of the rule, click the (+) icon > select the applicable asset objects > click OK.

    See Objects Supported in SD-WAN Policy.

    Best Practice - Use Updatable Objects in the "Destination" column of the SD-WAN Policy. This allows matching of application connections on the first packet and most accurate traffic steering.

  7. In the Services & Applications column of the rule, click the (+) icon > click Services or Applications > select the applicable objects > click OK.

    See Objects Supported in SD-WAN Policy.

  8. In the Behavior column of the rule, click the (+) icon > select the applicable Steering Behavior object > click OK.

    See Configuring Steering Behavior.

    Note - You can select only one Steering Behavior object in a rule. If you select a different object, then it replaces the current object.

  9. In the Enforcement column of the rule, click the (+) icon > select the applicable profile objects > click OK.

    Note - Select the profile you created in Infinity Portal:

  10. From the top toolbar, click Publish to save the changes.

  11. From the top toolbar, click Enforce to apply the changes.

    The orange frame on this button means there are changes that are not enforced.

    In the popup window that opens, click Publish & Enforce Policy.

Note - To disable a rule, in the Number column, click the three-dots on the right side of the rule number.

Example:

Objects Supported in SD-WAN Policy

This section provides a list of objects you can use in various columns of SD-WAN policy rules.