sk167109 - Autonomous Threat Prevention Management Integration Release Updates

Autonomous Threat Prevention Management Integration Release Updates

Product: Security Gateways, Security Management
Version: R80.40 (EOS), R81 (EOS), R81.10 (EOS), R81.20, R82, R82.10
OS: Gaia
Last Modified: 2026-07-19

Solution

Introduction | Availability | Released Takes | Manual Installation | List of Resolved Issues

Introduction

Autonomous Threat Prevention Management (ATPM):

Example screenshot from SmartConsole:

The Autonomous Threat Prevention Management Integration packages are installed automatically on all relevant Check Point devices when Automatic Update downloads are enabled (see sk175504, section 2-B). If Automatic Updates are disabled, you can install Autonomous Threat Prevention Management Integration packages manually using the steps below.

Availability

Update Release Date GOT_TPCONF GOT_TPCONF_MGMT GOT_MGMT DC_INFRA
29 19 Jul 2026 (Take 163) (Take 41) (Take 139) (Take 30)

Where:

Released Takes

Date Description Package Take
19 Jul 2026 Update 29 GOT_TPCONF 163
26 Apr 2026 Update 28 GOT_MGMT 139
01 Mar 2026 Update 28 GOT_TPCONF_MGMT 41
20 Nov 2025 Update 27 GOT_MGMT 137
13 Aug 2025 Update 26 GOT_TPCONF 158
05 Jan 2025 Update 25 GOT_TPCONF 137
03 Mar 2024 Update 24 GOT_TPCONF 128
17 Dec 2023 Update 23 GOT_TPCONF 127
10 Dec 2023 Update 22 GOT_TPCONF 124
05 Sep 2023 Update 21 GOT_TPCONF 120
02 Apr 2023 Update 18 GOT_TPCONF 112
25 Jan 2023 Update 17 GOT_MGMT 108
08 Jan 2023 Update 16 GOT_TPCONF 111
14 Jun 2022 Update 15 GOT_TPCONF 107
20 Mar 2022 Update 14 GOT_MGMT 99
... ... ... ...

Manual Installation (Offline)

  1. On the Security Gateway / each Cluster Member / Scalable Platform Security Group, install the Autonomous Threat Prevention package GOT_TPCONF):
    1. Prepare a temporary directory:
      1. Connect to the command line on the Security Gateway / each Cluster Member / Scalable Platform Security Group.

      2. Log in to Expert mode:

        expert

      3. Create a temporary directory:

        • On the Security Gateway / each Cluster Member: mkdir -v /var/log/GwAtpUpdate
        • On the Scalable Platform Security Group: g_all mkdir -v /var/log/GwAtpUpdate
    2. Get the required Autonomous Threat Prevention package:
      1. Download the GOT_TPCONF package from the "Availability" section above to your computer.
      2. Copy the package from your computer to the Security Gateway / each Cluster Member / Scalable Platform Security Group to the temporary directory /var/log/GwAtpUpdate/).
    3. Get the Installation script:
      1. Download the installItpDarwin.sh script to your computer.
      2. Copy the Installation script from your computer to the Security Gateway / each Cluster Member / Scalable Platform Security Group to the temporary directory /var/log/GwAtpUpdate/).
    4. Go to the temporary directory:
      • On the Security Gateway / each Cluster Member: cd /var/log/GwAtpUpdate ; pwd
    5. Assign the "execute" permission to the Installation script:
      • On the Security Gateway / each Cluster Member: chmod -v +x installItpDarwin.sh
    6. Run the installation script:
      • On the Security Gateway / each Cluster Member: ./installItpDarwin.sh --local $(pwd)

When finished, the script shows "Finished".

  1. On the Management Server, install the Autonomous Threat Prevention packages ( GOT_TPCONF_MGMT, GOT_MGMT, and DC_INFRA):

    1. Prepare a temporary directory:
      1. Connect to the command line on the Management Server.
      2. Log in to Expert mode.
      3. Create a temporary directory: mkdir -v /var/log/MgmtAtpUpdate
    2. Get the required Autonomous Threat Prevention packages:
      1. Download the GOT_TPCONF_MGMT, GOT_MGMT, and DC_INFRA packages from the "Availability" section above to your computer.
      2. Copy the packages from your computer to the Management Server to the temporary directory /var/log/MgmtAtpUpdate/).
    3. Get the Installation script:
      1. Download the installItpDarwin.sh script to your computer.
      2. Copy the Installation script from your computer to the Management Server to the temporary directory /var/log/MgmtAtpUpdate/).
    4. Go to the temporary directory: cd /var/log/MgmtAtpUpdate
    5. Assign the "execute" permission to the Installation script: chmod +x installItpDarwin.sh
    6. Run the Installation script: ./installItpDarwin.sh --local $(pwd) When finished, the script shows "Finished" and a list of the installed packages.
    7. In SmartConsole > Security Policies view > Threat Prevention, "Autonomous Threat Prevention" appears.
  2. In SmartConsole, enable Autonomous Threat Prevention in the Security Gateway / Cluster Object:

    1. Connect with SmartConsole to the Management Server.
    2. From the left navigation panel, click the Gateways & Servers view.
    3. Double-click the Security Gateway / Cluster object.
    4. From the left tree, click General Properties.
    5. In the lower pane, click the Threat Prevention tab.
    6. Select Autonomous Threat Prevention.
    7. Click OK.
  3. In SmartConsole, create an Autonomous Threat Prevention policy (if you already have a Threat Prevention policy package, skip to Step 5):

    1. In SmartConsole, in the top left corner, click the Menu icon and click Manage policies and layers.
    2. In the Manage policies and layers window, click New.
    3. Enter a name for the policy package.
    4. On the General page > Policy types section, select Threat Prevention (you can select more policy types if required).
    5. Click OK.
    6. In SmartConsole, from the left navigation panel, click the Security Policies view.
    7. In the Infinity Threat Prevention section, click Policy.
    8. From the top drop-down list with the five pre-defined profiles, select the required profile.
    9. Click OK.
  4. In SmartConsole, install the Autonomous Threat Prevention policy:

    1. In SmartConsole, from the top, click Install Policy.
    2. Select Threat Prevention.
    3. Select the applicable Security Gateway / Cluster objects.
    4. Click Install.
    5. Test the Threat Prevention policy - download a malicious file (for example, EICAR) through the Security Gateway / Cluster.

List of Resolved Issues and New Features per Autonomous Threat Prevention Management Update

ID Description
Update 29 - Gradual deployment from 19 Jul 2026
ODU-4435 Disabled TPCONF on the VSNext Virtual Switch.
Update 28 - Gradual deployment from 26 Apr 2026
ODU-4030 The " An illegal reflective access operation has occurred" warning is displayed, even though Threat Prevention policy installation on ElasticXL Cluster succeeded.
Update 27 (20 November 2025)
ODU-3235 Minor fixes.
Update 26 (13 August 2025)
ODU-2594 UPDATE: Enhanced file type classification in the Anti-Virus blade.
... ...

Article Properties

Access Level: General
Status: Approved
Date Created: 2020-06-10
Last Modified: 2026-07-19