Jump to main content
R82
Check Point
Endpoint Security Web Management
Administration Guide
Index
R82 Check Point Endpoint Security Web Management Administration Guide
Search
Important Information
Introduction to Endpoint Web Management
Logging into
Endpoint Web Management Console
Reconnect Tool
Supported Operating Systems for the Endpoint Security Client
Endpoint Security
Client Requirements for Microsoft Windows
Endpoint Security
Client Requirements for Microsoft Windows Server
Endpoint Security
Client Requirements for
macOS
Endpoint Security
Client Requirements for Linux
Deploying
Endpoint
Clients
Installation Token
Automatic Deployment of Endpoint Clients
To create new deployment rules for automatic deployment
Endpoint Setup Error Messages
Manual Deployment of Endpoint Clients
Using the Export Package
Installing the Exported Package or Client
Adding a New VPN Site to an Exported Package
Remote Installation of
Initial Client
Using
Push Operation
Setting the
Deployment
Agent
Setting the Target Devices
Remotely Installing the
Initial Client
Heartbeat Interval
Monitoring
Endpoint Security
Deployment and Policy
Configuring Alert Messages
Configuring an E-mail Server
Uninstalling Third-Party
Anti-Virus
Software Products
Managing Licenses
License Enforcement
Getting Licenses
Getting and Applying Contracts
Managing
Administrators
for the
Endpoint Web Management Console
Viewing Computer Information
Endpoint Device Filters
Computer Status Attributes
Endpoint Status Fields
Endpoint Data Fields
Working with the Computers Table
Managing Computers - General Actions
The Overview
Reports
Managing Devices
Managing Storage and Peripheral Devices
Using Wild Card Characters
Viewing Events
Viewing Endpoint Posture
Vulnerability Assessment Table
Device and Application View Reference
Patch Status Messages
Details Widget
Configuring Endpoint Policy
Policy Mode
Configuring the
Threat Prevention
Policy
Web & Files Protection
Behavioral Protection
The
Behavioral Guard
&
Anti-Ransomware
Component
Analysis & Remediation
Adding Exclusions to Rules
Web and Files Protection Exclusions
Behavioral Protections
***
Optimizing the Endpoint Security Client for Servers and Profiles
Quarantine Management
Managing Quarantined Files
Endpoint Security
Client Device Restart Requirements
Configuring the Data Protection Policy
Authentication before the
Operating System
Loads (Pre-boot)
Smart Pre-Boot
Enable Smart Preboot
Easy Unlock
Self Unlock
Passwordless
Pre-boot
Authentication
Enable passwordless preboot authentication
Single Sign-On
with
OneCheck Logon
BitLocker Encryption for Windows Clients
Configuring a BitLocker Encryption Policy
FileVault Encryption for
macOS
Global Policy Settings for
Full Disk Encryption
Check Point
Full Disk Encryption
Self-Help Portal
Activating the Self-Help Portal
Configuring the Self-Help Portal
User Settings for the Self-Help Portal
Monitoring the Self-Help Portal Policy
Configuring Media Encryption and Port Protection
Configuring the Write Action
Configuring Authorization Settings
Managing Devices
Advanced Settings for Media Encryption
Media Encryption Remote Help
Port Protection
Global Policy Settings for
Media Encryption
Configuring
Access & Compliance
Policy
Firewall
Configuring
Security Zones
Configuring Firewall Rule Advanced Settings
Configuring Inbound/Outbound Rules
Inbound Traffic Rules
Outbound Traffic Rules
Parts of Rules
Editing a Rule
Deleting a Rule
Managing
Firewall
Objects and Groups
Supported Object Categories
Configuring the Application Control Policy
Creating the List of Applications on the Reference Device
Appscan
Command Syntax
Uploading the
Appscan
XML File to the
Endpoint Security Management Server
Configuring Application Permissions in the
Application Control
Policy
Disabling or Enabling Windows Subsystem for Linux (WSL)
Developer Protection
Configure Developer protection
Exclusions to Developer Protection
Compliance
Planning for Compliance Rules
Configuring
Compliance
Policy Rules
Ensuring Alignment with the Deployed Profile
Remote Access Compliance Status
Compliance Action Rules
Check Objects
Compliance Remediation Objects
Create or change a Remediation object
Service Packs for
Compliance
Ensuring that Windows Server Updates Are Installed
Detecting Common Vulnerabilities and Exposures
Configuring Posture Assessment Settings
Anti-Virus
for
Compliance
Monitoring
Compliance
States
About to be Restricted State
Configuring Global Policy Settings
Share Data
Full Disk Encryption
Configuring Client Settings
User Interface
Pre-Boot Images
Windows Background Image
Customized Client Image
Customized Browser Block Pages
Log Upload
Installation and Upgrade Settings
Agent Uninstall Password
Local Deployment Options
Authenticated Proxy
Sharing Data with
Check Point
Connection Awareness
Super-Node
Configure a Super Node through the toolbar
Disable Capabilities
General Network Protection
Push Operations
Connected, Disconnected and Restricted Rules
Backward Compatibility
Policy Operation
Configure an Indicator of Compromise
Import or Export Policies
Exporting Policies
Importing Policies
Capabilities of Offline Client
Performing Data Recovery
Full Disk Encryption Drive Slaving Utility
Full Recovery with Recovery Media
BitLocker
Recovery
FileVault Recovery
For a volume formatted as CoreStorage on macOS 10.12 or higher
Decrypt and recover a FileVault-encrypted Mac with APFS
Giving Remote Help to Full Disk Encryption Users
Managing
Active Directory
Scanners
Active Directory
Authentication
Configuring Active Directory Authentication
Configuring Alternative
Domain
Names
Troubleshooting Authentication in Server and Client Logs
Virtual Groups
Certificate Management
Anti-Malware Updates
Viewing Logs
Exporting Logs
Creating Security Certificates for TLS Mutual Authentication
Query Language Overview
Forensics Data
Endpoint Security
for Linux
Deploying
Endpoint Security
for Linux
Endpoint Security
for Linux CLI Commands
Endpoint Security
for Windows Virtual Desktop Infrastructure (VDI)
Software Blades
for Persistent Desktops
General
Shared Signatures Server
Configuring Clients for Non-Persistent Desktops
Creating a Pool for Non-Persistent Desktops
Disabling the
Anti-Malware
Periodic Scan
Software Blades
for Non-Persistent Desktops
Software Blades
for Non-Persistent Desktops
Basic Golden Image Settings
Assigning Policies to VDI Pools
Disabling the
Anti-Malware
Periodic Scan
Endpoint Security for Terminal Server / Remote Desktop Services
Recent Tasks
Known Limitations
Appendix
Appendix A - Deploying
Endpoint Security
Client using SCCM
Step 1: Create the
Endpoint Security
Windows Application in SCCM
Step 2: Deploy the
Endpoint Security
Windows Application in SCCM
Appendix B - Uninstalling the Endpoint Security Client (For macOS and Windows)
Appendix C - Deploying
Endpoint Security
Client Using
Microsoft Intune
Appendix D - Microsoft Intune Wipe and Windows Reset with Full Disk Encryption
24 September 2026
© 2020 - 2026 Check Point Software Technologies Ltd.