Introduction
Security Checkup Cloud Service
The goal of Security Checkup Cloud Service is to make the process of running the report easier for our Partners and Security Engineers.
In this service, Security Checkup Reports are being generated in the cloud instead of on Partner / SE on-site monitoring device. In addition, the Cloud Management will be available for the Partner / SE for 21 days in order to custom the report, see the incidents and show the findings to the customer.
This service allows a Check Point Partner or SE to send the Security Gateway’s log files to the Check Point Cloud using an automated tool after monitoring is done.
The report will be generated in the Cloud Management, and then sent back to the Partner / SE via email.
This process will require two steps to be taken from Partner / SE side which will be described in this Administration Guide:
-
Building Setup & Monitoring traffic
-
Run the script in the end of the setup
-
Easier and shorter sales cycle by saving Partner / SE time to generate and analyze the security findings.
-
Better HW performance as there is no need to install SmartEvent server on the on-site monitoring device.
-
Save HW costs as a smaller HW can be used to monitor traffic (for example: a smaller Check Point appliance model or even a laptop in small organizations).
-
Saves a visit to the customer site to collect the logs for the checkup report because they will be automatically uploaded to the cloud.
-
Partner / SE sets up a Check Point standalone gateway with relevant Security and Management Software Blades activated. SmartEvent server is not required.
-
Partner / SE plugs the device into the customer network to inspect mirrored or inline traffic (recommended monitoring duration: at least 1 week).
-
After the standard set up is done, the Partner / SE need to run a script which automatically upload the logs after X days (recommended – at least one week).
-
Reports are generated in the Cloud Service and sent back to the Partner / SE encrypted via email.
-
Partner / SE can also view the incidents in the cloud management, custom the report and use it as regular SmartEvent machine.
Requirements |
Comments |
---|---|
R80.10 and above GA standalone (SmartEvent Server is not required) |
Gaia OS is supported. |
Valid UserCenter / Partner Map credentials |
It is mandatory to enter User Center/ PartnerMAP password for authentication process - Without it we will not be able to generate report. |
Internet connection |
HTTPS and SSH connectivity to the internet. |
Security Checkup Cloud Service Script |
Download from sk112732. |