Threat Emulation connects to the ThreatCloud to update the engine and the operating system images. The default setting for the Threat Emulation appliance is to automatically update the engine and images.
The default setting is to download the package once a day.
Best Practice - Configure Threat Emulation to download the package when there is low network activity.
Update packages for the Threat Emulation operating system images are usually more than 2GB. The actual size of the update package is related to your configuration.
To enable or disable Automatic Updates for Threat Emulation:
The Updates page opens.
To learn more about configuring a Threat Prevention Policy, see the R80.30 Threat Prevention Administration Guide.