Check Point Management
Integration & Setup Manual
Check Point Management Integration Guide
Overview
Cup’n’String Guard integrates with Check Point Management (R80.10+) to push AI tool network policies to Check Point gateways via the Management API. Guard follows the standard Check Point session lifecycle — open session → make changes → publish → install-policy — and owns only a named, tagged rule section inside the designated policy package.
Support level
Guard Firewall Orchestration — session → publish → install-policy with async job polling and synthetic rollback.
Recommended Guard mode
Observe first, then Enforce once the designated rule section is validated.
Known limitations
- Check Point policy installs target all gateways in the package by default — Guard cannot install to a single gateway subset without additional config.
- Concurrent rule modifications by other admins require manual conflict resolution in SmartConsole.
Setup outline
- Confirm the supported platform and deployment requirements with your administrator.
- Use a dedicated integration identity with the minimum required permissions and validated TLS connections.
- Review policy in your environment before enabling enforcement, then verify the intended access outcomes.
Contact the Cup’n’String team for deployment-specific configuration and verification guidance. Never share credentials in support messages or screenshots.
Integration Info
Links
Verify what categories and runtimes this stack fits inside in the global compatibility dashboard.
Supported Environments Matrix