Managing Licenses

The Spark Management admin can configure the license type per Plan or Gateway:

  • Pay-As-You-Go (PAYG) - You are charged only for the days that a specific device is in active use.

  • Subscription - A pre-paid yearly subscription purchased through your distributor. Standard license plan with an expiration date.

NFR (Not For Resale) is configured the same way as Pay-As-You-Go. NFR is available only for MSP / MSSP accounts and can contain up to two Gateways.

PAYG / NFR Prerequisites

PAYG - The Check Point Portal account must be an MSSP account or an MSSP child account.

NFR - The Check Point Portal account must be an MSSP account or an NFR eligible for MSP account.

Important - When the MSSP shares a Plan with PAYG enabled with a child account, the MSSP administrator must confirm in the Check Point Portal that the child account has an active PAYG contract. For more information, Check Point Portal MSSP Administration Guide (Section: Managed Security Service Provider Partners and Distributors > Pay-As-You-Go Contracts).

Limitations:

  • Only 2500 models can use NFR or Pay-As-You-Go. Older models must use Subscription.

  • Customers that manage only one account with no MSP / MSSP hierarchy cannot use Pay-As-You-Go

  • PAYG is supported only for MSPs, or MSSPs that are approved by the distributor, who purchased the dedicated PAYG hardware SKUs (2500 series).

  • When you enable Pay-As-You-Go as an MSP / MSSP, the contract must be per customer.

  • When you import an account that was originally PAYG-eligible, the Plans in that exported account are still PAYG but the administrator must enable the contract.

Workflow for PAYG

  1. In the Manage Accounts page in the Check Point Portal, select the desired account and add a PAYG contract for Spark Management.

  2. In the Spark Management Plan, go to the License section and select PAYG.

  3. After a few minutes, the Gateway that connects to the Plan and the account from the previous steps is seen in Spark Management with a valid PAYG license.

End-to-end procedure to configure PAYG

Notes:

  • You can also create a new Plan and select the desired licensing model through the wizard.

  • Enabling the PAYG option starts monthly billing for Gateways in the selected Plan and account that run supported versions.

  • Gateways that are connected to this Plan and are not using the dedicated PAYG hardware SKUs (2500 series), or if the account does not have a PAYG contract, continue to use a Subscription license.

  • To stop monthly billing, change the licensing model to Subscription and Confirm the change in the confirmation window.

  • You can also configure a single Gateway for PAYG when it is Unlocked from the Plan.

  • You must have a valid PAYG contract for each of your customer accounts where you configured a Plan with PAYG.

To view your PAYG usage:

  1. To view the usage report, go to the Check Point Portal and click service and contracts.

  2. To view all Gateways that are assigned to this Plan but running older versions and therefore cannot use PAYG licensing, open the Plan and on the License page, click View Gateways.

    Note - This option does not appear when all assigned Gateways are 2500 series Appliances.

To check the licensing status of each Gateway:

  1. Click Gateways in the left navigation bar.

  2. The License type and License status columns are hidden by default. To display, click the column selector in the upper-left corner of the Gateways list and enable License type and License status.

  3. Click the filter icon to filter by specific license type and status.

Troubleshooting