Check Point
Technical Documentation

Policy Insights Threat Prevention

Automated analysis and optimization recommendations for Check Point Threat Prevention policies. Identify misconfigurations, optimize performance, and strengthen your security posture.

11
Insight TypesIn Total
3
MisconfigurationSecurity gaps
3
Policy OptimizationPerformance
5
Profile TuningFine-tuning
1

Deactivated Blade

Security Gap Detection
Any Gateway Misconfiguration
Description
Identifies gateways where a threat prevention blade (Anti-Bot, Anti-Virus, IPS, Threat Emulation, Zero Phishing, Threat Extraction) is installed but not enabled in any active profile.
Severity
LevelCondition
HIGHBlade not enabled in ANY profile across ALL layers
MEDIUMBlade not in this layer but IS enabled in another layer
Confidence

HIGH — Direct policy analysis

Finding Example
The Anti-Bot blade is installed on gateway "GW-Paris" but is not enabled in any profile. This leaves your gateway without bot and command-and-control protection.
Remediations
Manual

Enable the blade in the appropriate profile and install policy.