Datasheet | Check Point SASE Internet Access Options | Check Point Software
Datasheet | Check Point SASE Internet Access Options
Check Point SASE Internet Access
Internet security that aligns with your requirements
Check Point SASE Internet Access delivers a superior user experience and robust protection that is 10x faster than competing solutions. It uses heuristics and machine learning to prevent viruses, ransomware, advanced persistent threats (APTs), and more. Internet Access is available as an On-Device or Hybrid deployment (combining on-device and cloud-delivered protection), delivering robust internet security and advanced capabilities that align with your requirements.
Check Point SASE Internet Access Hybrid: Powerful Protection with Flexible Deployment
Internet Access Hybrid gives organizations advanced capabilities with the flexibility to inspect web traffic locally or in the cloud based on their unique requirements. This approach accommodates remote and hybrid teams, providing protection against web-borne threats wherever it’s needed.
Benefits
• Full control: Inspect traffic locally or through the cloud, based on use case or preference.
• Scalable security: Supports protection across remote and hybrid teams.
• Single agent simplicity: Uses the same agent as Private Access, simplifying deployment
Key Features
• Advanced threat protection: Robust web security via both device and cloud-based inspection.
• Cloud gateway access: Enables DNS filtering, SaaS security, and IP lock for SaaS apps.
Ideal For Organizations That:
• Need internet security for remote and hybrid workforces
• Require advanced features such as DNS filtering or a unique IP address to block unmanaged devices from accessing SaaS
• Want a single agent for secure remote access and internet security
Check Point SASE Internet Access On-Device: High-Performance Internet Security for Remote Teams
Internet Access On-Device is a cost-effective solution that protects remote users without routing internet traffic through the cloud. All security enforcement is handled locally on the user’s device via the SASE agent, reducing latency and avoiding the costs of running security processes in a cloud gateway. This option delivers powerful protection in a lightweight agent that doesn’t impact device performance. Users stay fully productive and safeguarded against today’s web-borne threats.
Benefits
• Lower TCO: No cloud usage for internet traffic reduces overall cost.
• 10x faster: Security policies applied directly on the endpoint, delivering faster performance and more precise localized results
• Simple deployment: Ideal for streamlined remote access protection without complexity.
Key Features
• Web filtering: Granular control over website and category access based on users or groups.
• Advanced threat protection: Stops ransomware, malicious URLs, zero-day threats, and other web-based attacks at the device level.
• Full coverage: Each user license covers up to five devices.
Ideal For Organizations That:
• Prioritize remote user protection and TCO
• Do not require cloud-based features
Comparison
If you want robust protection, localized results and no cloud dependency, Internet Access On-Device is ideal. On the other hand, if you need broader visibility or IP restrictions for SaaS, Internet Access Hybrid gives you extra control.
Reference the table below to decide which option is the best fit. If you still need help deciding, book a short demo with one of our experts.
| BENEFIT | INTERNET ACCESS ON-DEVICE | INTERNET ACCESS HYBRID |
|---|---|---|
| Simplify Connectivity | Seamless direct-to-Internet access with minimal complexity | Flexibility to route traffic via cloud for added inspection when needed |
| Security Enforcement | On-device security ensures protection travels with the user | Combines endpoint and cloud intelligence for broader protection against advanced threats |
| Customized Web Access Control | Enforces per-user or group policies directly on the device | Enforces web policies either locally or through the cloud, based on your architecture |
| Support for Cloud-Delivered Security | Focused on local protection, no cloud gateway access | Includes cloud gateway access for more scalable, cloud-based threat detection and policy enforcement |
| Expanded Visibility & Control | On-device inspection | Gain cloud-level control with DNS filtering, IP-based SaaS access policies, SaaS security |
| Investment Level | Lower cost, ideal for core protection needs | Value-based pricing that delivers flexibility and enterprise scalability |
Worldwide Headquarters
5 Shlomo Kaplan Street, Tel Aviv 6789159, Israel
U.S. Headquarters
100 Oracle Parkway, Suite 800, Redwood City, CA 94065