sk183153 - R81.10.17 for Spark Firewall Appliances
R81.10.17 for Spark Firewall Appliances
Solution ID: sk183153
Technical Level: Basic
Product: Spark Firewall
Version: R81.10.X
OS: Gaia Embedded
Platform: 1500, 1570R, 1575R, 1595R, 1600, 1800, 1900, 2000
Last Modified: 2026-07-06
Solution
Check Point's latest version for all Spark Firewall deployments is R81.10.17.
For more info about all Spark Firewall R81.10.x releases, refer to the Release map article.
Introduction
Spark Firewall R81.10.17 includes major improvements to WebUI speed and responsiveness, enabling you to load pages faster. In addition, the release includes memory optimizations, specifically for the 15x0 models, as well as multiple bug fixes. Most of these capabilities are available both in the WebUI and in the Spark Firewall Management application, and affect different UI aspects such as the Overview page, objects view, reports and cluster configuration.
Click here to see the general playlist of feature videos.
This document was last updated on 6 July 2026.
Note: The latest GA Replacement Build 996004914 includes code fixes for VPN CVEs: CVE-2026-50751 and CVE-2026-50752 found in earlier Build 998004901.
What's New in R81.10.17
Security
- Spark support for DoS / Rate Limiting protocols for enhanced protection against DoS (Denial-of-Service) attacks. See the R81.10.X Spark Firewall Appliances CLI Reference Guide > Chapter "Working with SecureXL".
Networking
- Optimized configuration for 1530/1550/1570/1590 (2GB) appliances.
- Enhanced UI experience to efficiently manage dozens of VLANS, Access Rules, and network objects.
- Improved cluster usability, stability and ease of configuration.
Status of Features
This section shows the status of various features after a clean install of the R81.10.17 release or after an upgrade to the R81.10.17 release:
- Some features will be disabled by default to decrease the utilization of CPU and RAM.
- Some features will be enabled by default to increase security.
- Some features will keep their status from a previous version.
| Feature | 1530, 1550, 1570, 1590, 1570R | 1535, 1555, 1575, 1595, 1575R, 1595R | 1600, 1800, 1900, 2000 | How to Enable/Disable the Feature |
|---|---|---|---|---|
| IoT | - After a clean install: disabled |
- After an upgrade: disabled
- In a cluster (after clean install and upgrade): disabled
- If managed by Spark Firewall Management: configured in the Plan object and in the Gateway object
Note - IoT is not supported for Ruggedized appliances. | - After a clean install: enabled - After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): disabled
- If managed by Spark Firewall Management: configured in the Plan object and in the Gateway object
Note - IoT is not supported for Ruggedized appliances. | - After a clean install: disabled - After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): disabled
- If managed by Spark Management: configured in the Plan object and in the Gateway object | Show / Hide the procedure
On a Spark Firewall, you can control the status of this feature in WebUI:
- Access Policy view
- Firewall section
- IoT page
In the Spark Management service, you can control the status of this feature in the Plans view: - Edit the relevant Plan object
- Security Software Blades category
- IoT page
- Enable Manage in SMP
- Configure the required settings
- Click Save
In the Spark Management service, you can control the status of this feature in the Gateways view: - Gateways page
- Edit the relevant Gateway object
- Security Software Blades category
- IoT page
- If it is necessary to override a Plan, then click Locked to plan
- Enable Manage in SMP
- Configure the required settings
- Click Save
| | SD-WAN | - After a clean install: disabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): disabled
- If managed by Spark Management: configured in the Plan object and in the Gateway object | - After a clean install: enabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): disabled
- If managed by Spark Management: configured in the Plan object and in the Gateway object | - After a clean install: disabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): disabled
- If managed by Spark Management: configured in the Plan object and in the Gateway object | Show / Hide the procedure
On a Spark Firewall, you can control the status of this feature in WebUI:
- Access Policy view
- Firewall section
- SD-WAN page
In the Spark Management service, you can control the status of this feature in the Plans view: - Edit the relevant Plan object
- Security Software Blades category
- SD-WAN page
- Enable Manage in SMP
- Configure the required settings
- Click Save
In the Spark Management service, you can control the status of this feature in the Gateways view: - Gateways page
- Edit the relevant Gateway object
- Security Software Blades category
- SD-WAN page
- If it is necessary to override a Plan, then click Locked to plan
- Enable Manage in SMP
- Configure the required settings
- Click Save
| | Smart Accel | - After a clean install: enabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): keeps the previous status | - After a clean install: enabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): keeps the previous status | - After a clean install: disabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): keeps the previous status | Show / Hide the procedure
On a Spark Firewall, you can control the status of this feature in WebUI:
- Access Policy view
- Firewall section
- Fast Accel page | | Hit Count | - After a clean install: disabled
- After an upgrade: disabled
- In a cluster (after clean install and upgrade): disabled | - After a clean install: disabled
- After an upgrade: disabled
- In a cluster (after clean install and upgrade): disabled | - After a clean install: disabled
- After an upgrade: disabled
- In a cluster (after clean install and upgrade): disabled | Show / Hide the procedure
On a Spark Firewall, you can control the status of this feature in WebUI:
- Access Policy view
- Firewall section
- Policy page
- More menu
- Hit Count Settings | | Device recognition | - After a clean install: disabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): disabled | - After a clean install: enabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): disabled | - After a clean install: disabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): disabled | Show / Hide the procedure
On a Spark Firewall, you can control the status of this feature in WebUI:
- Device view
- Network section
- Local Network page
- Edit the internal port / WiFi port
- Advanced tab
- Assets Management section
- The checkbox Enable device recognition | | Remove Jitter from probing | - After a clean install: disabled
- After an upgrade: disabled
- In a cluster (after clean install and upgrade): disabled
- If managed by Spark Management: configured in the Plan object and in the Gateway object | - After a clean install: disabled
- After an upgrade: disabled
- In a cluster (after clean install and upgrade): disabled
- If managed by Spark Management: configured in the Plan object and in the Gateway object | - After a clean install: disabled
- After an upgrade: disabled
- In a cluster (after clean install and upgrade): disabled
- If managed by Spark Management: configured in the Plan object and in the Gateway object | Show / Hide the procedure
On a Spark Firewall, you can control the status of this feature in WebUI:
- Device view
- Network section
- Internet page
- Edit the Internet connection
- Connection Monitoring tab
- Advanced Probing Settings section
In the Spark Management service, you can control the status of this feature in the Plans view: - Edit the relevant Plan object
- Device Settings category
- Probing Settings page
- Enable Manage in SMP
- In the Quality Check Methodology section, select Best Practice
- Click Save
In the Spark Management service, you can control the status of this feature in the Gateways view: - Gateways page
- Edit the relevant Gateway object
- Device Settings category
- Probing Settings page
- If it is necessary to override a Plan, then click Locked to plan
- Enable Manage in SMP
- In the Quality Check Methodology section, select Best Practice
- Click Save | | Probing | - After a clean install: enabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): disabled | - After a clean install: enabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): disabled | - After a clean install: enabled
- After an upgrade: keeps the previous status
- In a cluster (after clean install and upgrade): disabled | Show / Hide the procedure
The Internet monitoring graphs are not presented.
On a Spark Firewall, you can control the status of this feature in WebUI:
- Device view
- Advanced section
- Advanced Settings page
- Edit the parameter
"OS advanced settings - Enable probing in cluster" and the parameter "OS advanced settings - Enable probing on the standby member" | | Where used | - After a clean install: disabled
- After an upgrade: disabled
- In a cluster (after clean install and upgrade): disabled | - After a clean install: disabled
- After an upgrade: disabled
- In a cluster (after clean install and upgrade): disabled | - After a clean install: disabled
- After an upgrade: disabled
- In a cluster (after clean install and upgrade): disabled | Show / Hide the procedure
On a Spark Firewall, you can control the status of this feature in WebUI:
- Device view
- Advanced section
- Advanced Settings page
- Edit the parameter
"WebUI settings and customizations - Enable where in use" |
Documentation
Administration Guides
Downloads
Updated 6 July, 2026
| Download Package | 1500
Appliances | 1595R
Appliances | 1600 / 1800
/ 1900 / 2000
Appliances |
| --- | --- | --- | --- |
| R81.10.17 Build 996004914
for Local Installation | (IMG) | (IMG) | (IMG) |
| R81.10.17 Build 996004914
for Central Deployment
in SmartConsole | (TAR) | (TAR) | (TAR) |
| R81.10.17 Build 996004914
for SmartUpdate | (TGZ) | (TGZ) | (TGZ) |
Revision History
| Date | Description |
|---|---|
| 06 July 2026 | Release of Build Build 998004914. This GA replacement includes the code fixes for VPN CVEs: CVE-2026-50751 and CVE-2026-50752. |
| 18 June 2026 | Latest Firmware Build 998004901 includes code fix for VPN CVEs: CVE-2026-50751 and CVE-2026-50752. |
| 26 May 2026 | Release of Build 996004892. This GA replacement includes code and functionality hardening changes. |
| 03 May 2026 | Rebranding to Spark Firewall. |
| 18 September 2025 | Release of Build 996004721. |
| 10 July 2025 | Release of Build 996004653. |
| 08 June 2025 | Release of Build 996004620. |
| 23 March 2025 | First release of this document (Build 996004508). |
NOTE
This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.