sk167109 - Autonomous Threat Prevention Management Integration Release Updates
Autonomous Threat Prevention Management Integration Release Updates
Product: Security Gateways, Security Management
Version: R80.40 (EOS), R81 (EOS), R81.10 (EOS), R81.20, R82, R82.10
OS: Gaia
Last Modified: 2026-07-19
Solution
Introduction | Availability | Released Takes | Manual Installation | List of Resolved Issues
Introduction
Autonomous Threat Prevention Management (ATPM):
- New Threat Prevention management, that uses Smart Cyber Policy from the cloud.
- Provides out of the box Threat Prevention profiles based on business & IT security needs.
- Easy assignment of policy profile that is tailored to your needs.
- Automatic update of Threat Prevention policy profiles to protect against the latest cyber threats using the latest technologies.
- Zero day-to-day maintenance required from the administrator, while maintaining optimal security. Administrators still have manual configuration capabilities.
Example screenshot from SmartConsole:
The Autonomous Threat Prevention Management Integration packages are installed automatically on all relevant Check Point devices when Automatic Update downloads are enabled (see sk175504, section 2-B). If Automatic Updates are disabled, you can install Autonomous Threat Prevention Management Integration packages manually using the steps below.
Availability
| Update | Release Date | GOT_TPCONF | GOT_TPCONF_MGMT | GOT_MGMT | DC_INFRA |
| 29 | 19 Jul 2026 | (Take 163) | (Take 41) | (Take 139) | (Take 30) |
Where:
- GOT_TPCONF, GOT_MGMT, and DC_INFRA - Packages for a Management Server
- GOT_TPCONF - A package for Security Gateways / Cluster Members / Scalable Platform Security Groups
Released Takes
| Date | Description | Package | Take |
| 19 Jul 2026 | Update 29 | GOT_TPCONF | 163 |
| 26 Apr 2026 | Update 28 | GOT_MGMT | 139 |
| 01 Mar 2026 | Update 28 | GOT_TPCONF_MGMT | 41 |
| 20 Nov 2025 | Update 27 | GOT_MGMT | 137 |
| 13 Aug 2025 | Update 26 | GOT_TPCONF | 158 |
| 05 Jan 2025 | Update 25 | GOT_TPCONF | 137 |
| 03 Mar 2024 | Update 24 | GOT_TPCONF | 128 |
| 17 Dec 2023 | Update 23 | GOT_TPCONF | 127 |
| 10 Dec 2023 | Update 22 | GOT_TPCONF | 124 |
| 05 Sep 2023 | Update 21 | GOT_TPCONF | 120 |
| 02 Apr 2023 | Update 18 | GOT_TPCONF | 112 |
| 25 Jan 2023 | Update 17 | GOT_MGMT | 108 |
| 08 Jan 2023 | Update 16 | GOT_TPCONF | 111 |
| 14 Jun 2022 | Update 15 | GOT_TPCONF | 107 |
| 20 Mar 2022 | Update 14 | GOT_MGMT | 99 |
| ... | ... | ... | ... |
Manual Installation (Offline)
- On the Security Gateway / each Cluster Member / Scalable Platform Security Group, install the Autonomous Threat Prevention package GOT_TPCONF):
- Prepare a temporary directory:
Connect to the command line on the Security Gateway / each Cluster Member / Scalable Platform Security Group.
Log in to Expert mode:
expertCreate a temporary directory:
- On the Security Gateway / each Cluster Member:
mkdir -v /var/log/GwAtpUpdate - On the Scalable Platform Security Group:
g_all mkdir -v /var/log/GwAtpUpdate
- On the Security Gateway / each Cluster Member:
- Get the required Autonomous Threat Prevention package:
- Download the GOT_TPCONF package from the "Availability" section above to your computer.
- Copy the package from your computer to the Security Gateway / each Cluster Member / Scalable Platform Security Group to the temporary directory /var/log/GwAtpUpdate/).
- Get the Installation script:
- Download the installItpDarwin.sh script to your computer.
- Copy the Installation script from your computer to the Security Gateway / each Cluster Member / Scalable Platform Security Group to the temporary directory /var/log/GwAtpUpdate/).
- Go to the temporary directory:
- On the Security Gateway / each Cluster Member:
cd /var/log/GwAtpUpdate ; pwd
- On the Security Gateway / each Cluster Member:
- Assign the "execute" permission to the Installation script:
- On the Security Gateway / each Cluster Member:
chmod -v +x installItpDarwin.sh
- On the Security Gateway / each Cluster Member:
- Run the installation script:
- On the Security Gateway / each Cluster Member:
./installItpDarwin.sh --local $(pwd)
- On the Security Gateway / each Cluster Member:
- Prepare a temporary directory:
When finished, the script shows "Finished".
On the Management Server, install the Autonomous Threat Prevention packages ( GOT_TPCONF_MGMT, GOT_MGMT, and DC_INFRA):
- Prepare a temporary directory:
- Connect to the command line on the Management Server.
- Log in to Expert mode.
- Create a temporary directory:
mkdir -v /var/log/MgmtAtpUpdate
- Get the required Autonomous Threat Prevention packages:
- Download the GOT_TPCONF_MGMT, GOT_MGMT, and DC_INFRA packages from the "Availability" section above to your computer.
- Copy the packages from your computer to the Management Server to the temporary directory /var/log/MgmtAtpUpdate/).
- Get the Installation script:
- Download the installItpDarwin.sh script to your computer.
- Copy the Installation script from your computer to the Management Server to the temporary directory /var/log/MgmtAtpUpdate/).
- Go to the temporary directory:
cd /var/log/MgmtAtpUpdate - Assign the "execute" permission to the Installation script:
chmod +x installItpDarwin.sh - Run the Installation script:
./installItpDarwin.sh --local $(pwd)When finished, the script shows "Finished" and a list of the installed packages. - In SmartConsole > Security Policies view > Threat Prevention, "Autonomous Threat Prevention" appears.
- Prepare a temporary directory:
In SmartConsole, enable Autonomous Threat Prevention in the Security Gateway / Cluster Object:
- Connect with SmartConsole to the Management Server.
- From the left navigation panel, click the Gateways & Servers view.
- Double-click the Security Gateway / Cluster object.
- From the left tree, click General Properties.
- In the lower pane, click the Threat Prevention tab.
- Select Autonomous Threat Prevention.
- Click OK.
In SmartConsole, create an Autonomous Threat Prevention policy (if you already have a Threat Prevention policy package, skip to Step 5):
- In SmartConsole, in the top left corner, click the Menu icon and click Manage policies and layers.
- In the Manage policies and layers window, click New.
- Enter a name for the policy package.
- On the General page > Policy types section, select Threat Prevention (you can select more policy types if required).
- Click OK.
- In SmartConsole, from the left navigation panel, click the Security Policies view.
- In the Infinity Threat Prevention section, click Policy.
- From the top drop-down list with the five pre-defined profiles, select the required profile.
- Click OK.
In SmartConsole, install the Autonomous Threat Prevention policy:
- In SmartConsole, from the top, click Install Policy.
- Select Threat Prevention.
- Select the applicable Security Gateway / Cluster objects.
- Click Install.
- Test the Threat Prevention policy - download a malicious file (for example, EICAR) through the Security Gateway / Cluster.
List of Resolved Issues and New Features per Autonomous Threat Prevention Management Update
| ID | Description |
| Update 29 - Gradual deployment from 19 Jul 2026 | |
| ODU-4435 | Disabled TPCONF on the VSNext Virtual Switch. |
| Update 28 - Gradual deployment from 26 Apr 2026 | |
| ODU-4030 | The " An illegal reflective access operation has occurred" warning is displayed, even though Threat Prevention policy installation on ElasticXL Cluster succeeded. |
| Update 27 (20 November 2025) | |
| ODU-3235 | Minor fixes. |
| Update 26 (13 August 2025) | |
| ODU-2594 | UPDATE: Enhanced file type classification in the Anti-Virus blade. |
| ... | ... |
Article Properties
Access Level: General
Status: Approved
Date Created: 2020-06-10
Last Modified: 2026-07-19