Supported Environments

Management Servers boot by default with 64-bit GaiaClosed Check Point security operating system that combines the strengths of both SecurePlatform and IPSO operating systems. kernel after a clean installation or upgrade to R80.40.

Note - If you revert from the R80.40 upgrade, the appliance boots with the 64-bit Gaia kernel, even if it was originally 32-bit.

Refer to the Support Life Cycle Policy page for more information and announcements about Check Point Appliances.

Check Point Appliances

Note - Support for Check Point Quantum appliances:

3800, 6400, 6700, 7000, 16200, 16600HS, 28000, and 28600HS.

For more information, see sk110052, sk139932, and sk152733.

These appliances are supported with the R80.40 Jumbo Hotfix Accumulator Take 45 or higher.

Management Server and Log Server

These platforms support R80.40 in the Management ServerClosed Check Point Single-Domain Security Management Server or a Multi-Domain Security Management Server. and Log ServerClosed Dedicated Check Point server that runs Check Point software to store and process logs. configurations:

Product and Supported Platforms

Check Point Product

Smart-1 205, 210,

225, 405, 410,

525, 625

Smart-1 3050, 3150,

5050, 5150

Open Servers

Virtual Machines (*)

Security Management Server

Endpoint Security Management Server

Log Server

SmartEvent Server

Multi-Domain Security Management Server

Multi-Domain Log Server

(*) Applies to Public Cloud and to Private Cloud. See the Hardware Compatibility List > Section Virtual Machines.

Platforms and Supported Products

Platforms

SK

Management

Management +

Log Server

Management +

Log Server +

SmartEvent

Smart-1 5050, Smart-1 5150

sk120453

Smart-1 3050, Smart-1 3150

sk98931

Smart-1 625

sk157153

Smart-1 525

sk120453

Smart-1 405, Smart-1 410

sk117578

Smart-1 225

sk98931

Smart-1 210 (16GB RAM) (1)

sk98931

Smart-1 210 (8GB RAM)

sk98931

Smart-1 205 (16GB RAM) (1)

sk98931

Smart-1 205 (4GB RAM) (2)

sk98931

Open Servers

N / A

Virtual Machines (3)

N / A

  1. As part of the upgrade to R80.40 on Smart-1 205, we recommend to upgrade the memory to 16GB.

  2. Smart-1 205 and Smart-1 210 appliances with default memory can run Security Management ServerClosed Dedicated Check Point server that runs Check Point software to manage the objects and policies in a Check Point environment within a single management Domain. Synonym: Single-Domain Security Management Server. OR Log Server OR SmartEvent.

  3. Applies to Public Cloud and to Private Cloud. See the Hardware Compatibility List > Section Virtual Machines.

Security Gateway or Cluster

These platforms support R80.40 in the Security GatewayClosed Dedicated Check Point server that runs Check Point software to inspect traffic and enforce Security Policies for connected network resources. or ClusterClosed Two or more Security Gateways that work together in a redundant configuration - High Availability, or Load Sharing. configuration:

Platforms

SK

Security Gateway,

Cluster

28000, 28600HS

sk152733

26000, 26000T

sk152733

23500, 23800, 23900

sk107516

21400, 21700, 21800

sk68701

16000, 16000T, 16200, 16600HS

sk152733

15400, 15600

sk107516

13500, 13800

sk93470

12200, 12400, 12600

sk68700

7000

sk139932

6200, 6400, 6500, 6600, 6700, 6800, 6900

sk139932

5100, 5200, 5400, 5600, 5800, 5900

sk110053

4200, 4400, 4600, 4800

sk68681

3100, 3200, 3600, 3800

sk110052

2200

sk68680

Open Servers

N / A

Virtual Machines (*)

N / A

(*) Applies to Public Cloud and to Private Cloud. See the Hardware Compatibility List > Section Virtual Machines.

Standalone and Full High Availability

Only these platforms support R80.40 in the StandaloneClosed Configuration in which the Security Gateway and the Security Management Server products are installed and configured on the same server. (Gateway + Management Server) configuration or Full High AvailabilityClosed A special Cluster Mode supported only on Check Point appliances running Gaia OS (R75.40 and higher) or SecurePlatform OS (R77.30 and lower), where each Cluster Member also runs as a Security Management Server. This provides redundancy both between Security Gateways (only High Availability is supported) and between Security Management Servers (only High Availability is supported). Synonyms: Full HA Cluster Mode, Full HA, FullHA. Cluster configuration:

Platforms

SK

Standalone

23500, 23800, 23900

sk107516

(1)

21400, 21700, 21800

sk68701

16000, 16000T, 16200

The model 16600HS does not support Standalone

sk152733

15400, 15600

sk107516

(1)

13500, 13800

sk93470

12600

sk68700

12200, 12400

sk68700

(2)

7000

sk139932

6200, 6400, 6600, 6700, 6900

The models 6500, 6800 do not support Standalone

sk139932

5900

sk110053

5100, 5200, 5400, 5600, 5800

sk110053

(1)

4400, 4600, 4800

The model 4200 does not support Standalone

sk68681

3100, 3200, 3600, 3800

sk110052

Open Servers

N / A

Virtual Machines (3)

N / A

  1. These appliance models support Standalone only with the HDD storage.

    These appliance models do not support Standalone with the SSD storage.

  2. These appliance models do not support Standalone configuration with their default 4GB RAM.

    To support Standalone configuration on these models, upgrade RAM to at least 8 GB.

  3. Applies to Public Cloud and to Private Cloud. See the Hardware Compatibility List > Section Virtual Machines.

  4. It is not supported to enable the SmartEvent Software BladeClosed Specific security solution (module): (1) On a Security Gateway, each Software Blade inspects specific characteristics of the traffic (2) On a Management Server, each Software Blade enables different management capabilities. on any cluster memberClosed Security Gateway that is part of a cluster. in Full High Availability Cluster configuration.

Threat Emulation Appliances

Platform

SK

Security Gateway,

Cluster

TE2000X

sk106210

TE1000X

sk106210

TE250X

sk106210

TE100X

sk106210

User Space Firewall (USFW)

Security Gateways on these platforms run in the User Space Firewall mode by default:

Platform

SK

USFW

28000, 28600HS

sk152733

26000, 26000T

sk152733

23900

From R80.40, the model 23500 does not support USFW

sk107516

16000, 16000T, 16200, 16600HS

sk152733

7000

sk139932

6200B, 6200P, 6200T, 6400, 6600, 6700, 6900

sk139932

3600, 3600T, 3800

sk110052

Open Servers (1)

N / A

Virtual Machines (2)

N / A

  1. Open ServerClosed Physical computer manufactured and distributed by a company, other than Check Point. must have 40 or more CPU cores.

  2. Virtual Machine must have 40 or more virtual CPU cores.

    Applies to Public Cloud and to Private Cloud.

    See the Hardware Compatibility List > Section Virtual Machines.

Notes:

  • Security Gateways on all other Check Point appliance models run in the Kernel Space Firewall (KSFW) mode by default.

  • You can change the configuration from the Kernel Space Firewall (KSFW) mode to the User Space Firewall mode on these Check Point appliance models (see sk167052):

    • 23800

    • 15400, 15600

    • 6500, 6800

    • 5400, 5600, 5800, 5900

  • Appliances configured as Standalone cannot run in the USFW mode.

Virtualization Platforms

For the most up-to-date information about the supported Linux versions and virtualization platforms, see the Hardware Compatibility List > Section Virtual Machines.

Cloud Platforms

Supported setups for cloud solutions:

Hardware Health Monitoring

R80.40 supports these Hardware Health Monitoring features for Gaia Check Point appliances:

  • RAID Health: Use SNMP to monitor the health of the disks in the RAID array, and be notified of volume and disk states.

  • Hardware Sensors: Use the Gaia PortalClosed Web interface for the Check Point Gaia operating system. or SNMP to monitor fan speed, motherboard voltages, power supply health, and temperatures.

    Check Point Appliances

    Smart-1

    SNMP Hardware sensor monitoring (polling and traps)

    Gaia Portal hardware sensor monitoring

    RAID monitoring with SNMP