support-checkpoint-com/
684 pages · Updated July 26, 2026
Pages
- Check Point R82.00.10 Build 998002242 for 1595R Appliances for SmartUpdate
- Check Point R82.00.10 Build 998002242 for 2550 Appliances for SmartUpdate
- Check Point R82.00.10 Build 998002242 for 1500 Appliances for SmartUpdate
- sk183157 - "Error in packet" error on SNMP query to the DPLANE after an upgrade
- Check Point R82.10 Gaia Clean Install - ISO
- Blink Image for R82.10 Take 467 Security Management including R82.10 Jumbo Hotfix Accumulator Take 24
- R82.10 SmartConsole Build 424
- Blink Image for R82.10 Take 467 Security Gateway including R82.10 Jumbo Hotfix Accumulator Take 24
- Check Point R82.10 Gaia Clean Install and Upgrade - CPUSE offline package
- Blink Image for R82.10 Take 467 Security Gateway including R82.10 Jumbo Hotfix Accumulator Take 19
- Check Point R82.10 Gaia Clean Install and Upgrade for 3900 appliances - CPUSE offline package
- Blink Image for R82.10 Take 467 Multi Domain Server including R82.10 Jumbo Hotfix Accumulator Take 24
- Blink Image for R82.10 Take 467 Security Gateway including R82.10 Jumbo Hotfix Accumulator Take 24 for 3900 appliances
- Check Point R82.10 Gaia Clean Install - ISO for 3900 Appliances (Take 467)
- Blink Image for R82.10 Take 467 Security Management including R82.10 Jumbo Hotfix Accumulator Take 19
- Blink Image for R82.10 Take 467 Security Gateway including R82.10 Jumbo Hotfix Accumulator Take 19 for 3900 appliances
- sk98226 - Dynamic Routing and VRRP Features on Gaia OS
- sk184233 - Maestro Orchestrator fails to add a new Security Appliance to a Security Group when Fastforward is enabled
- R82.10 Jumbo Hotfix Accumulator Recommended Jumbo Take 24
- sk183754 - Microsoft Azure Network Adapter (MANA)
- sk184336 - Hitcount of NAT Rule Base fails after Security Management Server upgrade
- sk184653 - Newly added SGM remains "Down" on Scalable Chassis with SSM440 configured with MTU higher than 9000.
- sk184814 - SD-WAN stops enforcing rules that use "My VPN Domain" or "Peer VPN Domain" objects
- sk184344 - SSL Network Extender Portal is accessible externally although it was disabled
- sk184505 - The "Logs" column in the Threat Prevention report incorrectly displays a count of "0" for all protections
- sk184381 - Connectivity issues between Security Group members in a Maestro Dual-Site configuration with a non-direct site-sync connection
- sk183618 - Test feed fails when testing a Network Feed object with the feed parsing format configured as JSON
- Check Point R82.00.10 Build 998002242 for 2570/2580/2590 Appliances for SmartUpdate
- R82.00.10 Build 998002242 for 1600/1800/2000 Appliances for SmartConsole
- R82.00.10 Build 998002242 for 1595R Appliances for SmartConsole
- R82.00.10 Build 998002242 for 1500 Appliances for SmartConsole
- R82.00.10 Build 998002242 for 2550 Appliances for SmartConsole
- R82.00.10 Build 998002242 for 2570/2580/2590 Appliances for SmartConsole
- R82.00.10 Build 998002242 for 1600/1800/2000 Appliances
- R82.00.10 Build 998002242 for 1500 Appliances
- R82.00.10 Build 998002242 for 2550 Appliances
- R82.00.10 Build 998002242 for 1595R Appliances
- R82.00.10 Build 998002242 for 2570/2580/2590 Appliances
- sk110348 - Mobile Access Reverse Proxy
- sk109039 - How to troubleshoot Mobile Access Push Notifications
- sk183508 - Check Point Quantum R82.10 Resolved Issues and Enhancements
- sk184356 - Firewall Drop Optimization in R82.10 and higher
- sk183507 - Check Point Quantum R82.10 Release Known Limitations
- sk184080 - Post-Quantum Cryptography (PQC) algorithms for VPN Tunnels in R82.10 and higher
- sk83520 - How to verify that Security Gateway and/or Security Management Server can access Check Point servers?
- sk94508 - Recommended Internet Access Settings for Automatic Downloads
- sk181833 - Check Point response to CVE-2023-48795
- sk182459 - Check Point Response to CVE-2024-6387 - OpenSSH Library RCE
- Support, Support Requests, Training, Documentation, and Knowledge base for Check Point products and services
- sk179464 - Cloud Firewall for AWS - Cloud WAN Overview and Integration
- sk93395 - Gaia Portal cannot load showing ERR_SSL_VERSION_OR_CIPHER_MISMATCH error in the browser
- sk173363 - Check Point R81.10 for Scalable Platforms
- sk109636 - Check Point Response to CVE-2016-0777 and CVE-2016-0778 - OpenSSH Client vulnerabilities
- sk36343 - Check Point Response to CVE-2008-5161 - OpenSSH CBC mode information disclosure vulnerability
- sk61744 - Check Point response to OpenSSH vulnerabilities: CVE-2006-5051 and CVE-2006-4924
- sk108202 - Best Practices - HTTPS Inspection
- sk106162 - Jumbo Hotfix Accumulator for R77.30 (R77_30_jumbo_hf)
- sk122074 - Creating an AWS IAM role for CME in Security Management Server
- sk116380 - Jumbo Hotfix Accumulator for R80.10 (R80_10_jumbo_hf)
- List of All Resolved Issues and New Features
- sk143213 - Multi-Domain Management Deployment on AWS
- Check Point Gaia Software Updates build 2771
- Check Point Gaia Software Updates build 2337 for R80.20 / R80.30 / R80.40 / R81 / R81.10 / R81.20
- Check Point Gaia Software Updates build 2771 for 3900 appliances
- sk183199 - Check Point Firewall 3900 Appliances
- sk183557 - Hotfix for Check Point Firewall 3900 Appliances
- sk39374 - FAQ - IPv6 support for Security Gateways R80.20 and lower
- Smart-1 Cloud auto update package for R82.10 and above for 3900 appliances T75
- Smart-1 Cloud auto update package for R80.40 and above T75
- Smart-1 Cloud auto update package for R82.10 and above T75
- sk181495 - Smart-1 Cloud support for Maestro Security Groups
- sk30197 - Configuring Proxy ARP for Manual NAT
- Check Point R81.10.17 Build 996004914 for 1595R Appliances for SmartUpdate
- Check Point R81.10.17 Build 996004914 for 1600/1800/2000 Appliances for SmartUpdate
- R81.10.17 Build 996004914 for 1595R Appliances
- sk180259 - How to create AWS snapshot for CloudGuard Network Security Gateway
- R81.10.17 Build 996004914 for 1600/1800/2000 Appliances for SmartConsole
- Check Point R81.10.17 Build 996004914 for 1500 Appliances for SmartUpdate
- R81.10.17 Build 996004914 for 1595R Appliances for SmartConsole
- R81.10.17 Build 996004914 for 1600/1800/2000 Appliances
- R81.10.17 Build 996004914 for 1500 Appliances
- R81.10.17 Build 996004914 for 1500 Appliances for SmartConsole
- sk181032 - "g_tcpdump -mcap" command does not merge traffic capture outputs
- Not Found
- sk181481 - During policy installation VPN tunnel between Check Point gateways with Link Selection and RDP fails
- sk182601 - Smart-1 7000-UL / 7000-XL / 7000-L / 700-M / 700-S Appliances
- sk183052 - Remote Access VPN client fails to connect to (or disconnects from) the VPN Virtual System when it connects through another Virtual System on a Scalable Platform in the VSX mode
- sk183075 - SmartConsole "Validations" panel shows "'statusDescription' can not include html tags" after an upgrade to R82
- sk183460 - VSNext Virtual Gateway drops traffic when it is connected to a Virtual Switch
- sk182997 - Cannot set the administrator expiration date to a specific date in SmartConsole
- sk183104 - ClusterXL drops traffic that is sent to its IPv6 Virtual IP Address that is configured with the Unicast Link-Local scope
- sk176846 - "You cannot use the Network Group [Group Name] as the Original source" validation error when adding a network group to a NAT rule
- sk183602 - R81.20 / R81.10 / R81 Security Gateways may fail to fetch the Threat Prevention policy from their R82 Management Server
- sk183434 - ElasticXL Cluster Members incorrectly change their state to "Down" when the Synchronization cable is disconnected
- sk183298 - "Management rejected fetch for this module - version matching problem" error when running the "fw vsx fetch" command on an R81.x Scalable Platform (Maestro and Chassis) in VSX mode with an R82 Security Management Server
- sk183783 - SmartConsole does not display logs from the Multi-Domain Server and Multi-Domain Log Modules after upgrade to R82
- sk184502 - Saving VSX configuration changes fails
- sk183481 - In ElasticXL, each Security Group Member allocates only 1785 ports for Hide NAT instead of approximately 16600 ports
- Support, Support Requests, Training, Documentation, and Knowledge base for Check Point products and services
- sk183031 - Gaia database lock on a Maestro Security Group configured with Management Aggregation (MAGG) is lost when using API or Gaia gClish to add a new Management interface to the Security Group
- sk183328 - User not matched to Entra ID Access Roles when part of more than 100 Entra ID groups
- sk183709 - QoS policy is not installed after rebooting an R82 Security Gateway
- sk183538 - Security Gateway freezes or crashes without generating a core dump, and "Global htab id 100020 out of range!" appears in $FWDIR/log/fwk.elg
- sk184396 - OSPF adjacencies repeatedly disconnect on VSNext Cluster
- sk184363 - "No Such Instance currently exists at this OID" when querying the OID tree 1.3.6.1.4.1.2620.1.48 on a Maestro Security Group
- sk184895 - VPND and IKED restart repeatedly on Security Gateways with a high number of VTI interfaces
- sk183513 - ElasticXL supported combinations of hardware platforms in R82 and higher
- sk184007 - GRE tunnels fail after upgrade to R82 when SecureXL is enabled on the Security Gateway
- sk184623 - Processing large Threat Emulation messages causes high memory usage and DLPU crashes
- sk184816 - Maestro site failover occurs despite site state or grade mismatch
- Blink Image for R82 Take 779 Security Gateway including R82 Jumbo Hotfix Accumulator Take 103
- sk183894 - How to migrate to ElasticXL or VSNext
- sk184773 - Custom Applications with Spaces Are Not Enforced in HTTPS Inspection Rulebase
- sk101556 - ATRG: Scalable Chassis 60000 / 40000
- sk185101 - TCP packets are not forwarded out of a Bridge interface when SecureXL is on
- sk184844 - SmartConsole RSA SecurID administrator login fails and FWM process unexpectedly exits on Security Management Server after upgrading to R82.10
- sk185124 - Multi-Domain Server in a high availability environment goes out of synchronization when AI Copilot is enabled
- sk180516 - "Get Interfaces without Topology" in SmartConsole erases some object and interfaces parameters
- sk184284 - ClusterXL Active Member Unexpectedly Exits Due to CIFS Hash Table Defect
- sk184880 - HTTPS Inspection uses the default outbound CA instead of the configured override
- sk184950 - Jumbo Hotfix Accumulator installation on Security Gateways with enabled MDPS may fail
- sk184928 - Check Point Response to CVE-2026-31431 (Copy Fail), CVE-2026-43284, CVE-2026-43500 (Dirty Frag) and CVE-2026-46300 (Fragnesia)
- sk181129 - Check Point Quantum R82 Resolved Issues and Enhancements
- sk183058 - Check Point Early Availability (EA) Programs
- Check Point R82.00.10 Build 998002242 for 1600/1800/2000 Appliances for SmartUpdate
- sk184492 - Spark Firewall Pro models - R82.00 upgrade restrictions
- Check Point R82 Gaia Clean Install - ISO
- Check Point R82 Gaia Clean Install and Upgrade - CPUSE offline package
- sk180631 - How to clone a Domain on a Multi-Domain Security Management Server
- sk184478 - Spark Firewall Cluster upgrade to R82.00.10
- sk184499 - Backup and restore between different Spark Firewall hardware models in R82.00
- R82 SmartConsole Build 1065
- Check Point R82 DLP Agent for Microsoft Exchange Server
- Blink Image for R82 Take 779 Security Gateway including R82 Jumbo Hotfix Accumulator Take 107
- Blink Image for R82 Take 779 Multi Domain Server including R82 Jumbo Hotfix Accumulator Take 103
- Blink Image for R82 Take 779 Security Management including R82 Jumbo Hotfix Accumulator Take 103
- sk182032 - SAML login in SmartConsole fails when Gaia Portal on the Management Server runs on a different port than 443
- Blink Image for R82 Take 779 Multi Domain Server including R82 Jumbo Hotfix Accumulator Take 107
- Blink Image for R82 Take 779 Security Management including R82 Jumbo Hotfix Accumulator Take 107
- R82 Documentation Package
- sk182252 - Dynamic Layer in Access Control Policy
- sk182106 - Threat Prevention Software Blades in Security Gateways R82 and higher
- sk184766 - Certificate and CRL validation fails from March 1, 2026
- sk39272 - How does the Security Gateway modify connection state when receiving FIN or RST packets?
- sk183294 - Cloud Firewall - Terraform Registry Modules
- Check Point R82.10 DLP Agent for Microsoft Exchange Server
- Check Point Gaia Software Updates build 2771
- Check_Point_R82.10_For_3900_Appliances_T271.iso
- sk104644 - 'RAsession_util' - advanced configuration
- sk92449 - Check Point Upgrade Service Engine (CPUSE) - Gaia Deployment Agent
- sk113955 - "You have reached the maximum number of active sessions" error in SmartConsole
- Support, Support Requests, Training, Documentation, and Knowledge base for Check Point products and services
- sk181127 - Check Point Quantum R82 Release
- sk60001 - Support Center Frequently Asked Questions
- sk185153 - CVE-2026-62145 - Local privilege escalation in Gaia Portal
- sk185169 - CVE-2026-16232 - Authentication bypass with SmartConsole login process using application token
- sk180488 - How to collect a debug for VPN issues
- Support, Support Requests, Training, Documentation, and Knowledge base for Check Point products and services
- sk65269 - Check Point response to OpenSSH CVEs
- sk92739 - The CPInfo utility
- sk96591 - RSA Key Lengths in Check Point Products
- sk122519 - Cloud Firewall for AWS - Amazon GuardDuty Integration
- sk181454 - Search in SmartConsole 'Security Policies' view highlights only some instances of the object
- sk181677 - The "Dst User DN" field in the log details section is not masked
- sk178886 - After replacing Host and Network objects with an Updatable object in the Access Control rule base, Security Gateway drops the traffic
- sk182063 - SmartConsole slowness when adding applications to rules
- sk172188 - Public Cloud CA Bundle for Cloud Firewall Release Updates
- sk180448 - "Operation failed, install/uninstall has been improperly terminated" error in SmartConsole during policy installation on R77.20 SMB Appliances with IPS enabled
- sk181921 - Messages logs showing "kernel: [SIM4];pkt_handle_f2v_if_needed: dropping packet (failed to send notification), conn:"
- sk181822 - Multi-Domain Security Management shows high number of open Remote CPM Server sessions
- sk181807 - "Global assignment settings are locked for editing by another administrator and need to be published or discarded before the operation can take place" message on Global Assignment failure
- sk180441 - Traffic from a Host behind a Virtual System in a VSX Cluster / Scalable Platform Security Group in the VSX mode does not reach the destination
- sk181652 - "Installstatus" table entries deleted after purge revision
- sk182033 - Login to SmartConsole fails when the Compliance blade runs scheduled scans
- sk181800 - Forensics report cannot be downloaded from the Threat Hunting Event tab
- sk181793 - ICAP client-enabled gateway experiences upload failures in HTTPS bypassed traffic by category
- sk182622 - "CloudGuard Controller is not responding" error in SmartConsole after installing Jumbo Hotfix Accumulator
- sk182572 - Virtual Systems in a Maestro Security Group fail to load the Threat Prevention (AMW) policy
- sk182267 - Tunnel Testing fails after an upgrade
- sk154872 - Microsoft Sentinel / Azure Log Analytics: Example configuration for Cloud Firewall and on-premises Check Point appliances
- sk182483 - vsec_lic_cli unexpectedly removes Central Licenses from the default license pool on the Primary Multi-Domain Security Management Server in a HA environment, affecting R81.20 Jumbo Hotfix Take 26 or higher
- sk181877 - API command "delete-package" fails with "Policy X is installed on 1 or more gateways."
- sk181783 - Duo Authentication Management Report shows different countries with Remote Access VPN client connections
- sk184451 - Unable to browse Internet after outbound HTTPS Inspection certificate renewal on Security Gateways before PBES2 Support
- sk164452 - In large Multi-Domain environments, FWM and global level log_indexer might crash in a loop
- sk181774 - Web Application names column width is too narrow to fit in Mobile Access Portal
- sk181630 - "RADIUS Accounting Settings" window takes a long time to load
- sk182635 - The PDPD daemon unexpectedly exits on a VSX Gateway
- sk181613 - Identity Cache Mode for Identity Sharing Protocols
- sk173629 - How to update Trusted CAs automatically
- sk182667 - SIP reply packets drops on the cleanup rule
- sk182585 - Check Point appliance with the LightSpeed Acceleration card installed is stuck during the boot
- sk182648 - Memory leak in up_manager_create_template_msg
- sk182447 - SNMP query for OID 1.3.6.1.4.1.2620.1.6.7.5.1.5 (CPU utilization) may return an incorrect value
- sk181798 - CPCA daemon is 'down' after creating a new Domain
- sk182432 - Gaia Portal editing bond interface Operation Mode is invisible on Jumbo Hotfix R81.20 Take 43
- sk180724 - The highest monitored VLAN over a bond interface is down after changing the bond's properties
- sk182030 - The DLPU process stops responding
- sk181553 - Policy Enforcement Point (PEP) logs shows a username after user session expired
- sk182743 - Check Point Response to CVE-2024-24914 - TCL substitution of global parameter values
- sk182556 - Dynamic Routing outage in a Security Group during the Zero Downtime (MVC) Upgrade to R81.20 or Downgrade from R81.20
- sk182307 - Automatic refresh of SmartConsole views after Global Policy Assignment
- sk182140 - Kernel Memory usage increases persistently each day on a Security Gateway / Security Group when CGNAT is enabled
- sk183101 - Check Point Response to CVE-2024-24911 - Out of Bounds read in the CPCA process on a Check Point Management Server
- sk182588 - PEPD process stops working and generates core dump files
- sk183394 - Check Point response to CVE-2025-32728 - The SSH directive "DisableForwarding" fails to disable "X11 Forwarding" and "Agent Forwarding"
- sk182320 - Check Point Response to CVE-2024-2511 - OpenSSL unbounded memory growth with session handling in TLSv1.3
- sk182684 - "Error: Update of the Network Feed 'OBJECT NAME' failed because the Security Gateway could not reach the destination" log from a Security Gateway
- sk182004 - "Dynamic Balancing is currently Initializing" status does not change on Security Gateway
- sk182049 - When creating a Custom Report in SmartConsole, the "Malware Action" entry appears two times
- sk182819 - VSX Cluster Members with VLAN interfaces change their cluster state to "Down" and "Active!" after installing a Jumbo Hotfix Accumulator
- sk182315 - Running the 'snmpwalk' command on OID .1.3.6.1.4.1.2620.1.6.23 causes snmpwalk on OID 1.3.6.1.4.1.2620.1.6.7.6.1 to show wrong output
- sk182026 - Traffic does not pass through the Security Group after deleting the built-in user "_lldp"
- sk181500 - CloudGuard Central Licenses deleted from the Security Management R81.20 Jumbo Hotfix Take 26
- sk182494 - Anti-Bot Blade generates error logs with the reason "Failed to Decrypt CP Site Response"
- sk181879 - Vulnerability scan shows that Management Server supports weak SSL ciphers when connecting to various web portals over HTTPS
- sk180437 - Unexpected traffic latency or outage on a Security Gateway / Cluster after policy installation
- sk182220 - Intermittent Unresponsiveness of Identity Awareness (PDP)
- sk182807 - Security Gateway drops packets with fwconn_chain_rematch_cache FAILED when ISP Redundancy enabled
- sk173950 - High CPU for SND cores due to MQ configuration issues on VSX environment
- sk182825 - The interface link state is down on Security Gateway in SecureXL User Mode (UPPAK) working with Jumbo Frames
- sk182813 - Traffic from other cluster members is lost after enabling VMAC
- sk182519 - Third-party server makes database edit queries with no changes which causes a full sync
- sk182560 - "Unable to connect to the server, Press OK to reconnect" error when trying to open the Network Interfaces tab in Gaia Portal
- sk182623 - Security Gateway in the Bridge Mode, with SecureXL in the UPPAK mode, drops on IPX / Ixia monitor connections
- sk182775 - Packet loss (fwconn_key_init_links failed) for ESP packets when using User-Mode SecureXL
- sk182224 - How to configure HTTPS Inspection to block connections to TLS servers with weak cryptographic keys
- sk181834 - Duplicate DAIP Object IP Addresses After Upgrade or Migration
- sk153832 - ATRG: SecureXL
- sk182725 - Anti-Spoofing drops IPv6 traffic that arrives at an interface with an IPv6 address configured
- sk184876 - Internal DDoS port re-enables itself after being disabled in Maestro Security Gateways
- sk183814 - High CPU Utilization on Single Core Due to Excessive VPN Probing and SEP Correction in ClusterXL HA Mode
- sk182403 - Dual Port 100/25GbE I/O card and Dual Port 40GbE I/O card are no longer detected/enumerated after the Jumbo Hotfix update
- sk181650 - The $FWDIR/../oc_feeder.conf file is empty on all VSs and VSX Gateways
- sk184230 - Certificate validity period not applied after using the "set_cert_validity" command
- sk184863 - Per-gateway Secure Configuration Verification (SCV) policy not enforced for Remote Access VPN clients
- sk183349 - Check Point response to CVE-2025-2028
- sk183615 - Check Point response to Apache Tomcat CVEs on Harmony Endpoint Security Management Server
- sk183690 - Multiple log entries about LOGIN_NOTIFIER_SERVER on Security Gateways with R81.20 Jumbo Hotfix Accumulator Take 96 or higher
- sk183767 - Remote and local backup operations fail after installation of Jumbo Hotfix Accumulator
- sk184534 - Excessive log entries for RADIUS users logging into Gaia Portal
- sk184981 - CVE-2026-48131 - VPND IKE Fragment Reassembly - Heap Out-of-Bounds Write via Sequence Number Zero
- sk181317 - "unable to watch directory /etc/routed-mc-enable: init: Too many open files" error in clish when configuring dynamic routing
- sk165094 - Best Practices - Custom Applications/Sites for Application Control and URL Filtering
- sk184982 - CVE-2026-48132 - VPN service may restart unexpectedly when processing IKE traffic over NAT-T 4500/UDP
- sk113241 - How to configure Gaia OS to rotate a custom log file
- sk184701 - CLONINGD process crashes during cloning-group configuration updates
- sk184993 - CVE-2026-48133 - Identity Awareness Captive Portal - Unauthenticated Local File Inclusion
- sk100403 - Gaia OS backup or snapshot fails with "There is already another backup process running"
- sk184983 - CVE-2026-48134 - SQL injection issue in UserCheck Portal when DLP is active
- sk184282 - Unable to enter Virtual System with "virtual-system-access all" configured
- sk184991 - CVE-2026-48135 - HTTP service can incorrectly process malformed HTTP requests
- sk184291 - LightSpeed Acceleration Card may fail to accelerate large data TCP connections at the hardware level
- sk184292 - ARPING fails in SecureXL UPPAK mode
- sk184992 - CVE-2026-48136 - Authenticated Administrator Role-Based Access Control Bypass in Compliance
- sk184771 - Routed Crash on Security Group Members After Orchestrator Daemon (orchd) Stop
- sk184641 - PPTP/GRE traffic fails when Hide NAT is used and SecureXL runs in UPPAK mode
- sk183935 - The command "cphaconf failover_bond <bond_name>" does not work with Management Data Plane Separation (MDPS)
- sk182042 - Advanced SAML authentication features for Remote Access VPN, Identity Awareness Captive Portal, and Mobile Access
- sk111583 - Mobile Access and VPN clients that support Multiple Login Options
- sk183419 - Spark Firewall R82.00.X - Resolved Issues and Enhancements
- Support, Support Requests, Training, Documentation, and Knowledge base for Check Point products and services
- sk183193 - Spark Firewall 2500 Series
- sk184357 - Spark Firewall R82.00.10
- sk81200 - How to Install a License
- -
- sk183153 - R81.10.17 for Spark Firewall Appliances
- sk98529 - Managing and Installing license via SmartUpdate
- sk93364 - How to add a new user to your Check Point User Center account
- sk22716 - How to create / join a User Center account
- sk103882 - Offline Updates for Check Point Products
- sk185152 - CVE-2026-62144 - Management Authentication Bypass and Privilege Escalation
- Support, Support Requests, Training, Documentation, and Knowledge base for Check Point products and services
- sk185102 - Hardening Recommendation Report in Web SmartConsole
- sk111080 - How to configure Check Point software to upload data to Check Point / download data from Check Point in versions R81.10 and lower
- sk175504 - How to configure Check Point software to upload data to Check Point / download data from Check Point in versions R81.20 and higher
- sk168597 - How to install a Hotfix
- sk182357 - Preventative Hotfix for CVE-2024-24919 - Spark Firewall
- sk181128 - Check Point Quantum R82 Release Known Limitations
- sk179432 - Software Releases for LightSpeed QLS / MLS and Check Point Firewall 9000, 19000, 29000 Appliances
- sk179028 - Connectivity issues in Maestro Security Group X with hosts in the network of 198.51.10x.0 / 24
- sk179926 - Threshold ASG traps send empty "asgTrapChassisID" and "asgTrapBladeID" variables
- sk91343 - FWD process consumes CPU/memory at high level on Multi-Domain Management Server when LEA clients are connected to it
- sk180181 - Gaia backup fails with "not enough space in /var/log/CPbackup/backups"
- sk180520 - Check Point Firewall 19000 and 29000 Appliances
- sk180281 - IKEv2 with 3rd party fails when Check Point initiate the tunnel
- sk180119 - The "fwm mds" or "fwm" process crashes with a 4GB core dump file
- Not Found
- sk180292 - Traffic does not pass through the GRE tunnel when Virtual MAC (VMAC) is enabled
- sk180530 - NAT-T traffic from VPN clients does not match implied rule
- sk180309 - Ipv6 address removed from interface when making change to bond interface
- sk167052 - User Space Firewall (USFW) support on Security Gateways
- sk180664 - Remote Access users unable to connect and high IKED daemon CPU utilization
- sk180294 - SmartConsole crashes after upgrade during policy installation
- sk180473 - Security Gateway crashes with FWK core dump or VMcore
- sk181698 - Check Point Firewall 9000 Appliances
- sk180540 - "Network per CPU" in CPView / SecureXL does not show traffic distribution for all CPUs
- sk180439 - Repeated "cphwd_get_device_accelerated_ifs: too many interfaces (32,218)" messages in $FWDIR/log/fwk.elg
- sk180324 - SNMPD occasionally consumes a high CPU level
- sk180683 - Check Point Gateway is not sending the 3rd party certificate that uses OCSP it was set to send for site-2-site VPN or Remote Access VPN but instead send the defaultCert
- sk98074 - MTU and Fragmentation Issues in IPsec VPN
- sk180944 - "API call failed with command: show-simple-gateway" error on Cloud Management Extension (CME)
- sk180669 - ClusterXL stops sending multicast PIM traffic after failover or a reboot
- sk181311 - Check Point Response to CVE-2023-28130 - Hostname command injection in Gaia Portal
- sk180681 - Unable to publish new worksessions
- sk180748 - Skyline does not show information
- sk180331 - Issues on a Check Point Appliance when restoring to a factory default image of a Dual Image after an upgrade to R81.20
- sk181588 - The CPD process consumes high CPU in a VSX environment
- sk180862 - Repeated reboots and SGMs in the DOWN state after installing R81.20 Jumbo Hotfix Take 8 on Maestro SGMs with Identity Awareness enabled
- sk180505 - Report from a port scanner software shows that the Security Gateway accepts FTP connections
- sk136515 - Is there a limit to the amount of SNORT rules that can be added?
- sk180728 - $FWDIR/log/fwd.elg is corrupted during log rotation
- sk180858 - Login to SmartConsole may fail while High Availability sync is running
- sk181026 - DLPU process stops working, creating a User Space core dump file on the Security Gateway
- sk180340 - Adding more than 250 VLANs on an Orchestrator MHO-175 Maestro Uplink interface causes intermittent traffic outages
- sk180969 - Some IPv6 connections randomly stop passing through ClusterXL in High Availability mode
- sk180855 - Site to Site VPN traffic in Load Sharing cluster is not synchronized across members and dropped
- sk180705 - Traffic stops working after a Security Gateway Member recovers from a failure
- sk181891 - The 'cxld' process consumes the CPU at 70%-100% on VSX Cluster Members
- sk164155
- sk179434 - After installing specific Takes of the Jumbo Hotfix Accumulators for R80.40 / R81 / R81.10 / R81.20 on a Security Gateway, Certificate Validation for Site to Site VPN and Remote Access VPN stopped working
- sk180605 - Check Point SD-WAN - Managed in Check Point Portal
- sk181507 - Security Gateway drops GTP Echo Response traffic with the reason "Wrong Destination Port"
- sk181506 - Security Gateway drops GTP traffic with the reason "Static IP not allowed"
- sk173765 - SSL Network Extender (SNX) disconnects randomly after upgrade to R81.x
- sk181842 - CloudGuard Controller Release Updates
- sk180964 - "No items found" or "Error retrieving results" errors when assigning policy targets in a Threat Prevention Policy, with empty "Install On" column
- sk180981 - CloudGuard Controller fails to connect to Cluster with MDPS enabled
- sk165832 - Threat Extraction Engine Release Updates
- sk180897 - Remote CPM server user exceeded session limit (100). Logins from remote clients are prohibited.
- sk180403 - Non-Transparent Proxy configuration is missing the IP address of the destination website in the URL Filtering logs
- sk114834 - Troubleshooting the "no proposal chosen" error
- sk180792 - "Requested policy X does not match currently installed policy Y on gateway Z" error after running install-policy from API
- sk181165 - FTP connection fails in Port Mode with NAT and Specific FTP clients
- sk180514 - "An internal error has occurred" error when connecting to SmartConsole with DNS name
- sk181427 - Check Point response to CVE-2022-4450, CVE-2022-4304 and and CVE-2023-2650
- sk181354 - Security Gateway deletes the PIM OIF after it sends "Prune-Echo" and enters MRT
- sk181408 - Not possible to configure the total number of IPv4 and IPv6 CoreXL Firewall instances to more than 64 when the Security Gateway runs in the USFW mode
- sk180584 - RSA RADIUS authentication fails when connecting from an external SmartEvent/Log Server
- sk181823 - In a Maestro Security Group, a VSX Virtual System that connects to a Virtual Switch may drop traffic as "Out of State"
- sk181471 - SmartConsole's "Where Used" and search options fail in the Read-only mode
- sk170857 - Using "Encryption Domain Per community" feature overrides Encryption Domain for other communities
- sk181614 - CloudGuard Controller for VMwaref NSX-T CPU and memory errors
- sk179651 - One way audio over Security Gateway fails after upgrade - Stability improvements for VoIP (SIP / H323) and other data conneciton
- sk181249 - "cannot access /sys/class/net/<interface>/queues: No such file or directory" error in mq_mng.elg file
- sk181155 - Users are not able to connect to RDP application with SNX in Application Mode
- sk181626 - "show configuration user" command fails with "Segmentation fault" on the Security Management Server
- sk181485 - Gaia Backup fails with the "cannot remove '/lvsnap/var/log': No such file or directory" error
- sk181039 - ioc_feeds changes the username to all lower cases which causes a 401 unauthorized error
- sk181605 - Configuring the PDP-Only mode for the Identity Awareness Software Blade
- sk180742 - Fullsync takes a long time to complete
- sk180808 - Security Gateway accepts HTTP/HTTPS traffic by an implied rule for its HTTP/HTTPS Web Portals, although there is an explicit rule to drop this HTTP/HTTPS traffic
- sk181643 - IKED process consumes high CPU and causes VPN outages every hour
- sk181367 - IOC Feeds do not work for specific longer URLs or HTTPS URLs
- sk170331 - Security Gateway stops logging locally or to assigned Log Servers
- sk181230 - Audit Logs for the Expert Mode Login on Gaia servers
- sk180531 - Cluster in High Availability mode fails to establish data connection with FTP server through VPN tunnel
- sk181674 - Gaia gClish command "installer verify N member_ids all" fails with "Quitting due to time-out" on a Scalable Platform Security Group
- sk182076 - "asg perf" command does not show output when MDPS is enabled on Scalable Platforms
- sk181661 - Policy installation on a Maestro Security Group fails after enabling the Maestro Fastforward feature
- sk181281 - "fwmultik_predefined_dispatching: BAD_MULTIK_TAG:got bad instance..." appears in /var/log/messages
- sk181148 - Policy uninstall is not possible. The 'fw amw unload' command does not disable the Threat Prevention blades
- sk180646 - "ERROR: fwaccel_dos_ioctl: IOCTL command CPHWD_IOCTL_DOS_DENY_LIST_CLEAR was not successful (ioctl.rc = CPHWD_IOCTL_RC_ERROR)" after reboot
- sk181186 - CPView and 'cpstat' command show different Application Control database versions
- sk182223 - Security Gateways with a large number of CPU cores allocated to CoreXL SND may experience performance issues when the "fwaccel dos deny" feature is configured
- sk181629 - Identity Awareness Daemons integration with modern memory allocator
- sk181460 - Opening and closing Security Gateway objects in SmartConsole takes a long time
- sk181801 - "Error logging into domain" in Web SmartConsole when connecting to a Domain on a peer Multi-Domain Security Management Server
- sk170055 - Site to Site VPN outage on ClusterXL Active member when running "cpstop" on the Standby cluster member
- sk180983 - "No candidates found for the operation" error when uninstalling the Threat Prevention policy in SmartConsole
- sk180673 - Latency in loading websites when using Security Gateway as proxy with HTTPS Inspection enabled
- sk180787 - Global policy assignment takes long time after making IPS profile changes
- sk181158 - High memory and CPU consumption by a ioc_feeds process
- sk180920 - Task notification reports that a database purge failed on the Standby Security Management Server
- sk181385 - Connectivity issues may occur in a Maestro Security Group when VLAN encapsulation is disabled on Orchestrators in Maestro Dual Site environment
- sk180966 - The CPU value in the output of the "cpstat os -f cpu" command is not correct
- sk182185 - Gaia OS contains a built-in user called 'cp_ender'
- sk181149 - Gaia Clish prompt does not appear after a TACACS user logs into a Maestro Security Group
- sk182112 - AWS CloudGuard Security Gateway boot into 'Sh-4.4' shell after in-place upgrade to R81.20 with Jumbo HFA Takes 38-53
- sk181097 - Security policy installation with "Mobile Application" fails
- sk182286 - CPU statistics are missing from CPView or show a wrong type
- sk180974 - "Scrub send_orig_email" uses an incorrect domain to send emails
- sk181649 - Smart WorkFlow request or approval causes SmartConsole to crash
- sk181525 - Cleanup rule/Stealth rule drops SIP response packets
- sk182178 - The size of the "migrate_export" output file is very large
- sk181487 - Link may not come up automatically in the 2-Port 40G/100G NIC, 4-Port 10G/25G NIC, and 10G/25G Sync Port
- sk181706 - The source or destination column is empty when exporting logs from SmartView to a CSV file
- sk181860 - High CPU usage on SND cores when high number of interfaces are configured
- sk181609 - Security Gateway forwards logs to the real IP address of the Management Server instead of the public (NATed) IP address
- sk180557 - Automatic Onboarding of Security Gateways to Infinity Portal - Release Updates
- sk182305 - Gaia OS R81.20 Jumbo Hotfix Accumulator Take 54 reports the Fan speed beyond the maximum threshold
- sk181768 - Anti-Spoofing drops packets that arrive at a Security Gateway through interfaces with Topology "External"
- sk181671 - Accelerated connections are interrupted during policy installation on a Security Gateway with HyperFlow enabled
- sk181989 - High core count Security Gateway in Kernel Mode Firewall fails to boot after the Jumbo Hotfix Accumulator upgrade
- sk182210 - R81.20 Jumbo Hotfix Accumulator Take 43 (or higher) installation fails for Endpoint Management Server with "Internal error in a hook script"
- sk178325 - Sizing Recommendations for a Check Point Security Management Server on Smart-1 600 / 6000 / VMWare ESX
- sk105302 - Traffic NATed behind an Address Range object is always NATed behind the same IP address
- sk181397 - The "show packages" Management API command with details level "full" may take a long time
- sk161632 - Domains Tool (domains_tool)
- sk181874 - Dynamic Routing Manager failback causes "TCP out of state: First packet isn't SYN" drops
- sk182016 - Security Gateway does not pass traffic through an external interface when it is managed by Smart-1 Cloud, and SecureXL works in UPPAK mode
- sk182488 - Traffic issues because of inconsistent MAC addresses on Maestro Security Group Members
- sk181925 - High CPU utilization on a Security Group when traffic undergoes NAT and L4 distribution is enabled
- sk182318 - "Categorized HTTPS Sites" stopped to classify specific websites
- sk182507 - SmartConsole fails to connect with this error: "Unable to connect to server. Server is initializing."
- sk182463 - On Quantum Maestro/Chassis or in ClusterXL, the Security Gateway may crash while processing a VPN/correction flow
- sk181922 - Monitord daemon causes high CPU on Quantum after 388 days, "Time shift detected!!!" in /var/log/messages
- sk181805 - SSL Network Extender (SNX) cannot connect after installing Jumbo Hotfix Accumulator
- sk181946 - "Groups/Users not updated with SID on the MGMT" error message after an upgrade
- sk181996 - Traffic outages may occur because of high utilization of CPU cores that run CoreXL SND instances
- sk182070 - How to renew IKE certificates for VPN, Multi-Portal, and Identity Broker on all managed Security Gateways
- sk180225 - Cluster Member takes a long time to initialize (INIT) after reboot or restart
- sk182272 - Policy installation on a Security Gateway running with UPPAK fails with error code 2000240 or 2000267
- sk183123 - The Security Gateway does not load the renewed IPSec VPN Certificate which causes VPN traffic interruption
- sk182379 - Traffic outage after policy installation on a Maestro Security Group in a Dual Site configuration
- sk181437 - Access Control Policy Revert Tool (policy_rev_tool)
- sk181909 - AWS Cross Availability Zone cluster member sends VPN traffic from its Elastic IP address instead of its alias IP
- sk183007 - High CPU, high packet drops, soft lockup, loss of neighborships and total traffic outage when multiple Elephant Flows are running in parallel
- sk182894 - Maestro Security Group Member enters a boot loop after the installation of specific R81.10 / R81.20 / R82 Jumbo Hotfix Accumulator Takes or after the upgrade to R82
- sk181815 - How to check RAM usage of the VPND process using the "cpstat" command
- sk182265 - Wrong interface names on the 9400 appliance
- sk182476 - Security Group Member in a VSX environment is in a boot loop after creating a new Virtual System with a WRP interface or after upgrading jumbo hotfix accumulator
- sk182732 - After an upgrade to R81.20 JHF Take 79/84/89 or to R81.10 JHF Take 169, some tabs in SmartView and SmartConsole may fail to open
- sk183293 - CVPND process fails to start on a newly created Virtual System
- sk182009 - Traffic does not match Access Roles that have "Packet Tagging" enabled
- sk182738 - Error: "You have reached the maximum number of active sessions"
- sk182641 - The "Gateways & Servers" view in Multi-Domain Security Management's SmartConsole shows incorrect information
- sk109038 - Messages in /var/log/messages file that can be ignored
- sk183438 - Stability issue in Check Point appliances 9300 and 9400
- sk182730 - No audio during the first five seconds of a VoIP call when using SecureXL
- sk181245 - Pull registry fails during a configuration pull on a Scalable Platform environment
- sk182806 - On Maestro, traffic to Remote Access client is dropped with "vpnk_tcpt invalid negative tunnel id"
- sk182835 - VoIP H.323 calls are dropped with reason "Handler 'h323_h245_code' reject"
- sk182537 - Two or more Endpoint Security VPN (Remote Access VPN) users get the same Office Mode IP address
- sk182848 - The routing daemon (routed) fails to start when a VTI is configured with a local IP address that matches the next-hop address used in the static route configuration
- sk183086 - SmartConsole's "Logs & Monitor" tab does not show logs, "The session has expired. please try to refresh the view" message appears
- sk182615 - Dynamic Balancing is stuck at initialization after upgrade
- sk181854 - Two-Factor Authentication for Gaia OS login
- sk182665 - Snapshot schedule fails
- sk182613 - Identity sync latency between PEP and PDP daemons
- sk183092 - Check Point Firewall Appliance 9000, 19000, 29000 with the 4-Port 10/25G SFP28 Acceleration Card crashes if the appliance is booted without the required Jumbo Hotfix Accumulator
- sk182974 - Error: "No matching appID candidates found for 'push'" message appears when modifying push notification settings on Capsule Workspace
- sk182453 - Default filter is loaded on virtual systems after reboot
- sk183251 - High CPU utilization in Maestro Security Group because of multiple instances of the "mq_mng -u" process
- sk183468 - "Mellanox firmware update *** FAILED ***" error during the installation of R81.20 Jumbo Hotfix Accumulator Take 99 or Take 105
- sk182040 - High CPU utilization on the new Active cluster member after a failover
- sk181519 - Threat Indicators starting with "https" are blocked based on DNS Reputation or URL Reputation
- sk183512 - Threat Extraction Software Blade may inadvertently delete some system files
- sk101878 - CPView Utility
- sk182790 - Automatic configuration of Application Control Categories on the Security Gateway
- sk182353 - Policy installation fails after upgrade
- sk180183 - Moving to the context of a Security Group Member or adding a new Security Group Member fails
- sk183124 - Cannot access ClusterXL Standby member through Bridge interface
- sk94064 - Synchronization with User Center
- sk172324 - Identity Awareness Captive Portal is missing after upgrade
- sk181465 - Guidelines for NIC Slot Population in Check Point Firewall 29000 Appliances
- sk182154 - The PPPoE interface loses its IP address after the ISP restart
- sk183244 - RADIUS authentication fails after installing Jumbo Hotfix Accumulator
- sk183490 - High CPU utilization detected in Maestro Security Group because of multiple instances of the "mq_mng -o" process
- sk183072 - Fixing bi-directional connection issues in Quantum Security Gateways
- sk183147 - Remote Access VPN users repeatedly lose connection to resources behind gateway, "IKE Negotiation with the gateway has failed" message in Remote Access VPN Client
- sk181024 - "enabled_blades" command output shows an error or incorrect output
- sk120633 - Domain Objects in versions R80.10 and higher
- sk183003 - Policy verification fails after upgrade
- sk183550 - Site-to-Site VPN fails with Third-Party Gateway after an upgrade
- sk183675 - DHCP broadcast packets are not visible on the intended VLAN when working in SecureXL User Mode (UPPAK)
- sk182787 - cpd daemon consistently exits with a segfault error and generates a core dump
- sk183054 - CVE-2024-52887 - Self-XSS vulnerability in Mobile Access Native Applications 'favorites' dialog
- sk183337 - TCP and UDP traffic over VLAN IDs greater than 2048 does not pass through the Maestro Security Group when SecureXL works in the UPPAK mode
- sk183166 - Multiple SNMP OIDs return incorrect data types
- sk178487 - ThreatCloud DNS Tunneling Protection
- sk182786 - api.elg outbound payload shows "Not written as the response is successful. See sk182786 for more information."
- sk181231 - Output of the "dynamic_split -p "command shows "Dynamic Split is currently off (Stopped due to State Verification failure") on a VSX Security Gateway
- sk182989 - Error: "Home directory for 'cadmin' cannot be in /home/cadmin directory" on Security Gateway
- sk182533 - Secondary Multi-Domain Server and Multi-Domain Log Server do not start services after fresh installation and re-establishing SIC
- sk182454 - Assigned load is zero on Scalable Platform Site after upgrade
- sk183088 - NAT unfold failure when Security Zone used in NAT rulebase
- sk183055 - CVE-2024-52888 - Mobile Access File Share applications are vulnerable to stored XSS attacks
- sk183181 - SecureXL in the User Mode (UPPAK) may have compatibility issues with R81.20 Jumbo Hotfix Take 96 and Take 98
- sk141412 - cppcap - Check Point Traffic Capture Tool
- sk183176 - Some custom applications in the HTTPS Inspection policy are not matched if they are part of a Group object
- sk164234 - How to manage public SSH keys for remote hosts on Gaia R80.40 and higher
- sk183441 - Security Gateway drops HTTP/2 traffic and generates a core dump file for the FWK daemon
- sk182742 - 0.0.0.0 static route does not show in VSX Security Gateway's routing table
- sk182087 - How to prevent multiple unsuccessful login attempts from Endpoint Security Client users on a Security Gateway
- sk182803 - How to add more than 14 Security Group Members to a Maestro Security Group in a Single Site Deployment in R81.10 and R81.20
- sk183373 - Cannot browse HTTPS sites after upgrade to R81.20 or higher when HyperFlow is enabled
- sk183194 - Slow web browsing to the Internet and download of files is stuck
- sk183009 - RAD Query Failure: HTTP 414 Error (Request-URI Too Long)
- sk182990 - Blocked HTTP HEAD requests from Android devices
- sk182597 - Packet captures are missing in Anti-Bot logs
- sk182386 - IPS log entries may be missing "source" and "destination" fields
- sk183218 - VoIP Traffic fails after initial call when SecureXL operates in the User Space (UPPAK) mode
- sk183222 - Random freezes (SSH and console) occur on appliances running in UPPAK mode
- sk180723 - RADIUS authentication sent with wrong IP address for SmartConsole on Multi-Domain Security Management Server
- sk184554 - Security Gateway stops responding with "BUG: soft lockup" in serial console
- sk182868 - Secondary PostgreSQL database grows extremely large
- sk182524 - "vsx-run-operation" fails on the Multi-Domain Security Management Server
- sk60701 - How to configure an alternate IP Address for Identity Awareness communication channel
- sk182233 - Redundant column is added to CSV file when "Export Gateways and Servers" option is used in SmartConsole
- sk183832 - The "vsec_lic_cli" utility cannot distribute a license when there are duplicate entries of the license on the Security Management Server
- sk183771 - Significant packet drops on interfaces configured with jumbo frames on 9800 appliances
- sk183443 - Traffic dropped with "Matched Optimized Drop" message despite being allowed by Rulebase
- sk181906 - How to see the API usage on a Management Server?
- sk183884 - VPN/Remote Access Security Gateways Using DigiCert/GeoTrust CA
- sk183154 - "Log Servers" tab in the Logs & Monitoring \ Logs & Events view is missing
- sk181349 - Execution of API commands completes after a very long time
- sk181209 - SmartView reports show "No data found" in some widgets
- sk165938 - How to configure persistent environment variables on the Management Server
- sk183040 - HealthCheck Point reports "rx_length_errors" for Security Group Members
- sk183108 - The rad_resp_slow process stops working on the Security Gateway
- sk106469 - Security Gateway drops GTP traffic with the log "Message includes unexpected information element type"
- sk183601 - SNMP queries for ASG branch stop working after upgrade on the Maestro Security Group when IPv6 is enabled
- sk183803 - Policy Server daemon on Remote Access VPN Gateway is turned off by default
- sk95311 - WebSocket Support for Mobile Access
- sk182548 - SAML authentication in Mobile Access Portal does not work in a Maestro Security Group in the VSX mode
- sk179931 - The "asg diag verify" command reports inconsistent OSPFv3 routes for Security Gateway Modules in Quantum Maestro
- sk183666 - Connectivity issues may occur between Maestro Sites that are connected through Cisco OTV switches
- sk178505 - Which TLS version do Check Point products use?
- sk183822 - Security Gateway stops forwarding traffic during HTTP/2 sessions
- sk30583 - What is FW Monitor?
- sk181683 - Vulnerability scan on the Security Management Server shows that port 8211 uses weak HMAC algorithms
- sk183168 - Check Point Response to CVE-2024-13176 - OpenSSL timing side-channel vulnerability in ECDSA signature computation
- sk184218 - Interface cards are not displayed in the output of the "show asset network" command when UPPAK and MDPS are enabled
- sk183835 - Backup file size on the Management Server grows after upgrade
- sk183702 - False positive SNMP power supply traps on 9000 Appliances
- sk183485 - In Maestro Dual Site in the VSX VSLS mode, CoreXL does not change the number of Firewall instances and SND instances during traffic load
- sk182947 - "not all observables successfully parsed" error when loading IPv6 IOC feed
- sk183137 - Mobile Access File Share applications are vulnerable to directory traversal attacks
- sk178671 - After adding a custom command in Gaia gClish with the "add command", the custom command is available only on the Single Management Object (SMO)
- sk184340 - Security Gateway working in SecureXL User Mode (UPPAK) crashes because of SND core flapping and USIM_x86 segmentation faults
- sk183871 - SNMP query for OIDs "vsxStatusInterfaceRxBytes" and "vsxStatusInterfaceTxBytes" always returns "0"
- sk184076 - System monitoring and health reporting functions on the Quantum Security Gateway fail
- sk184093 - After upgrading to R81.20 Jumbo Hotfix Take 111 or Higher, Scheduled SFTP Backup configuration is not fully displayed in "show configuration" outputs
- sk164414 - Check Point Support Data Collector (CPSDC) Tool Release Updates
- sk183956 - Services fail after Virtual System failover in Maestro dual-site environment using the Same Virtual MAC feature
- sk184183 - Security Gateway/Cluster member becomes unresponsive and drops traffic
- sk183645 - Gaia Portal Session Cookie missing the SameSite attribute
- sk182065 - The output "lldpneighbors" does not contain all the expected information of LLDP Neighbors
- sk182784 - SNMP OID .1.3.6.1.4.1.2620.1.6.7.5.1.5.X incorrectly shows 100% CPU utilization
- sk182923 - Mobile Access SSL Network Extender (SNX) remote users with Windows 11 24H2 fail to connect
- sk184419 - UPPAK memory buffer leak may occur when MDPS enabled and IPv6 disabled
- sk182660 - ClusterXL Standby member stays down because of the Critical Device "Fullsync"
- sk183733 - LLDP data formatting issues when querying using SNMP
- sk183697 - Import of a Large Policy Package Fails with Validation and API Errors in the Multi-Domain Server
- sk167109 - Autonomous Threat Prevention Management Integration Release Updates
- sk183256 - Mobile Access services fail to start on a Virtual System
- sk180522 - OpenTelemetry Collector (CPotelcol) Release Updates
- sk182914 - Unexpected source IP address "0.0.127.x" seen in IPS logs
- sk182734 - Virtual System in a VSX VSLS Cluster with a Virtual Router does not fail over when a cluster interface is disconnected
- sk184683 - Web browsing is slow or frozen when using HTTP/HTTPS proxy after an upgrade
- sk171436 - HealthCheck Point (HCP) Release Updates
- sk183268 - Users from Terminal Server Identity Agent (MUH Agent) servers do not match rules with access roles
- sk184342 - Login to SmartConsole may fail intermittently
- sk182740 - VoIP traffic latency through a VSX Gateway when SecureXL works in the User Space (UPPAK) mode
- sk180661 - Capsule VPN for Android / Capsule Connect for iOS / Capsule VPN Plugin for Windows loses access to internal resources
- sk183681 - Security Gateway blocks the download of files larger than 4 GB with the log "Application Control - HTTP parsing error occurred (2)"
- sk161294 - Clone Policy Package task in SmartConsole fails with the error "The object name must not contain whitespace characters at the beginning or the end"
- sk184196 - Memory leak on Security Gateway cluster members
- sk183201 - After an upgrade to R81.20 Jumbo Hotfix Accumulator Take 96 and higher, users with special characters in the username cannot login to Gaia Portal
- sk184873 - CPView History displays irregular time intervals and large gaps in data
- sk184228 - ICAP enabled TE100X emulation fails with "There was an Unexpected Internal error, Please try again later"
- sk183972 - The SSHD daemon unexpectedly exits on Multi-Domain Log Server (MLM) after SSH session ends
- sk184379 - SNMPv3 monitoring fails on dplane while succeeding on mplane
- sk182339 - Gaia gClish saves the Expert mode password hash as MD5 although SHA method was configured on a Security Group
- sk183728 - Security Gateway does not decrease TTL in packets that go through SecureXL Medium Path
- sk183544 - IOCTL failures causing crashes and freezes in various processes
- sk183446 - FWD Sub-Processes Not Starting After System Restart
- sk182506 - After policy installation, Security Gateway drops all traffic with "up_manager_fw_handle_first_packet: cmi_context_exec_with_chain_connkey() failed;"
- sk184475 - LOG_INDEXER process unexpectedly exits during a log exporting task
- sk184887 - Maestro Security Group Member status frequently changes to "Down"
- sk183200 - Error: "Can not load indicators feed without AV & AB blades enabled, please enable AV & AB and try again"
- sk183844 - Policy installation failed on gateway. If the problem persists contact Check Point support (Error code: 0-2-2000245) or (Error code: 0-2-2000264)
- sk184239 - Compliance Blade report displays inconsistent or outdated information
- sk183752 - QoS Software Blade fails to start with error: "QoS is not responding. Verify that QoS is installed on the gateway"
- sk183662 - Excessive memory consumption in the FWK Process when handling multiple files over single FTP connection
- sk183563 - Policy installation delayed due to FWM process load
- sk179508 - Server-Side Change Report Generator Release Updates
- sk183461 - How to configure the Management Server to use credentials when it sends queries to an LDAP Server
- sk181282 - Cannot reach websites because of "Streaming Engine: TCP Invalid Retransmission" drops
- sk184028 - After Jumbo Hotfix upgrade, certain User Space processes become unresponsive when working in Firewall Kernel Space Mode
- sk184510 - Gaia API Proxy fails with complex Gateway commands
- sk183156 - Scalable Platforms (ElasticXL, Maestro and Chassis) Release Updates
- sk183748 - Identity Awareness AD user authentication takes a long time
- sk184371 - BGP Sessions Fail to Re-Establish After SMO Failover Due to Physical Link Failure
- sk184568 - Intermittent VS failover when both MHOs have the interface link state set to Down
- sk184461 - After the SMO failover, Identity Collector connections are handled by both the old and new SMO
- sk184194 - Policy installation on a Virtual System fails without an error message
- sk182559 - Connections with fragmented packets drop with "Virt Defrag Timeout" error
- sk184096 - First packet delays for around 10 seconds due to pending WSDNSD DNS lookup over TCP
- sk184591 - H323 VoIP Calls are dropped
- sk165653 - AutoUpdater Utility
- sk185115 - Maestro VSX operations cause Configuration PNOTE, member DOWN, and topology push failures
- sk183569 - Security Gateway drops HTTP connections without the "Host" header after installing a Jumbo Hotfix Accumulator
- sk112454 - How to configure Rate Limiting rules for DoS Mitigation in R80.20 - R81.20
- sk184031 - IOC Feed "Prevent" Action Fails to Block Emails on Quantum Security Gateways Running Gaia R81.20
- sk184786 - Intermittent "First packet isn't SYN" drops on a Maestro Security Group
- sk184407 - PDPD process stops responding when memory usage exceeds 4GB on a Security Gateway
- sk180521 - OpenTelemetry CPviewExporter Release Updates
- sk184294 - Network traffic fails when HTTPS inspection is enabled on Non-Standard ports in R81.20 and higher versions
- sk184530 - Incorrect zone assignment occurs when NAT rulebase returns HOLD
- sk184768 - RSH connections fail when Destination NAT is configured for the RSH server
- sk184200 - FTP transfers of files smaller than 1KB fail and result in empty files on destination server
- sk184330 - Unable to create or view Suspicious Activity Monitoring (SAM) rules in SmartView Monitor on a standalone device
- sk184932 - ElasticXL VSX cluster members fail over several times per day due to HTTP/2 Explicit Proxy process termination
- sk182136 - RAD process unexpectedly exits when a cluster failover or a Security Gateway reboot occurs
- sk166056 - MaaS (Management as a Service) Tunnel Release Updates
- sk184923 - Wrong Route Selection with ISP Redundancy on ClusterXL
- sk184455 - Traffic is randomly dropped due to loop prevention
- sk184524 - High CPU on the CMID process when ICAP Client is enabled on Security Gateway
- sk183736 - FWK process may exit when deleting one subordinate interface from a bonding group
- sk183421 - Policy Insights Release Updates
- sk184628 - Legitimate Files Incorrectly Flagged as Malicious When Scanned with ICAP
- sk184144 - "api stats -calc_avg_duration" command fails with IndexError on Security Management Server
- sk183853 - FTP traffic does not pass through Security Gateway when using the FTP "Extended Passive Mode"
- sk183941 - Alias ports for Domains are not visible in Gaia API or Clish on a Multi-Domain Server and a Multi-Domain Log Server
- sk181458 - CPquid (QUID) Release Updates
- sk184237 - SD-WAN Monitoring page displays inflated values in the "Top Applications" section
- sk182866 - Log Exporter Auto Update Deployment
- sk184316 - Generic Data Center Object changes not reflected in SmartConsole GUI
- sk184638 - Packet mode search does not return results for Inline Layer rules in SmartConsole and Management API
- sk184779 - SmartConsole workflow 'Locks' and 'Changes' counters reset to zero
- sk185110 - How to enable forwarding of STP / BPDU packets through a bridge interface in a Maestro Security Group
- sk184273 - HTTPS Connections from Python scripts, CI/CD pipelines, and the OpenSSL command-line tool to the Security Gateway fail
- sk165674 - Support for the "Same VMAC" in Scalable Platforms and ClusterXL
- sk174185 - Download Archive of Recommended Jumbo Hotfix Accumulator Takes
- sk108902 - Best Practices - Backup on Gaia OS
- sk13009 - Check Point Database Tool (GuiDBedit Tool)
- sk91400 - System Backup and Restore feature in Gaia
- Support, Support Requests, Training, Documentation, and Knowledge base for Check Point products and services
- sk183506 - Check Point Quantum R82.10 Release
- sk34810 - Configuring Proxy and Authenticated Proxy per Web Application on Mobile Access Gateway
- sk143612 - Gaia REST API: Read and send information to Check Point servers
- sk113113
- sk152052 - Check Point Release Map
- sk138672 - Management Data Plane Separation (MDPS)
- sk65205 - How to install Gaia OS from a USB device on Check Point appliance and Open Servers using ISOmorphic Tool
- sk120193 - Gaia Fast Deployment (Blink)
- sk177624 - Check Point R81.20 for Scalable Platforms
- sk135172 - Upgrade Tools package
- sk170314 - Web SmartConsole
- sk116158 - Portable SmartConsole
- sk177714 - Upgrade packages for Cloud Firewall
- sk158292 - Cloud Firewall - Private Cloud Deployment Images for VMware and KVM
- sk95746 - Check Point Recommended Version and Release Terminology
- sk111158 - Central Deployment Tool (CDT)
- sk174348 - Spark Firewall - IPv6 Limitations
- sk178566 - Skyline Deployment
- sk183406 - Spark Firewall - Releases R82.00.X
- sk92755 - Compatibility of transceivers for Check Point appliances
- sk181134 - Check Point R81.10.X Resolved Issues and Enhancements
- sk104562 - Supported cipher suites for HTTPS Inspection
- sk184394 - Cloud Firewall for KVM Virtualization Platforms
- Support, Support Requests, Training, Documentation, and Knowledge base for Check Point products and services
- sk182516 - Check Point Response to CVE-2024-3596 - Blast-RADIUS attack
- sk185033 - CVE-2026-50751 - User Authentication bypass on VPN Remote Access and Mobile Access in deprecated IKEv1 key exchange
- sk111013 - AWS CloudFormation Templates
- sk182056 - Rugged Firewall Appliance 1575R
- sk166654 - Rugged Firewall Appliance 1570R
- sk147417 - Users are not authenticated when an identity source provides the login name in 'User Principal Name' format "user@domain"
- sk185035 - CVE-2026-50752 - VPN site to site certificate bypass vulnerability in deprecated IKEv1 key exchange
- sk181461 - Multi-Domain Sever does not add a new Security Group object to an existing group of policy targets
- sk170334 - How to deploy Check Point CloudGuard on AWS Outposts
- sk181429 - When a user changes AD group, their access role is not updated
- sk181944 - Check Point response to CVE-2023-51764 - Postfix SMTP Smuggling vulnerability
- sk183494 - TP_CONF_SERVICE is shown as "running" or "terminated" in VSW (Virtual Switch) context
- sk182606 - The "$FWDIR/log/fwk.elg" or "var/log/messages" file is flooded with "cmik_loader_fw_context_match_cb"
- sk182745 - PDPD process crashes and becomes unresponsive
- sk168880 - Spark Firewall 1600 and 1800 Models
- sk184072 - Show tasks API call returns incorrect date
- sk157412 - Spark Firewall 1500 Series
- sk181492 - Rugged Firewall Appliance 1595R
- sk163417 - Check Point Certification Frequently Asked Questions (FAQs)
- sk179004 - R81.10.00 for Spark Firewall Appliances
- sk183407 - Spark Firewall R82.00.00
- sk180949 - Harmony Connect Agent Release Notes Home Page
- sk182336 - Preventative Hotfix for CVE-2024-24919 - Quantum Gateway Information Disclosure
- sk173903 - Check Point Quantum R81.20 (Titan) Release
- sk178604
- sk181924 - Spark Firewall 1900 and 2000 Models
- sk179615 - Spark Firewall Appliances - Releases R81.10.X
- E88.72 Check Point Remote Access VPN Clients for Windows
- Support, Support Requests, Training, Documentation, and Knowledge base for Check Point products and services
- E89.10 Endpoint Security VPN Clients for macOS - Disc Image (DMG)