sk183421 - Policy Insights Release Updates
Policy Insights Release Updates
Product: Multi-Domain Security Management, Security Management, SmartConsole
Version: R81.20, R82, R82.10
Last Modified: 2026-07-19
Solution
Introduction | Manual Installation | Availability | List of Resolved Issues
Introduction
Policy Insights is a feature that analyzes both Access and Threat Prevention policy, as well as the network traffic to identify optimization opportunities, system performance and security risks. It suggests modifications to improve the security and performance posture by making rules more restrictive and eliminating unnecessary access and by improving the Threat Prevention Rule Base, profiles and exceptions. Policy Insights uses a self-updatable package.
Best Practice: The latest Policy Insights Updates package should run on all Management and Log Servers.
The feature is available starting from:
- R82 Jumbo Hotfix Accumulator Take 14
- R81.20 Jumbo Hotfix Accumulator Take 99
Threat Prevention support is available starting from:
For more information, see:
Access Policy Insights:
- R82 Quantum Security Management Administration Guide > Creating an Access Control Policy > Policy Insights
- R81.20 Quantum Security Management Administration Guide > Creating an Access Control Policy > Policy Insights
Threat Prevention Policy Insights:
- R82.10 Threat Prevention Administration Guide > Custom Threat Prevention> Threat Prevention Policy Insights
The Policy Insights package is installed automatically on all relevant Check Point Management Servers when Automatic Update downloads are enabled (see sk175504, section 2-B).
If Automatic Updates are disabled, you must first manually install the latest AutoUpdater Take and then install the Policy Insights package manually using the steps below.
Manual Installation (Offline)
Instructions:
- Download the offline package to your computer. See the "Availability" section.
- Copy the offline package from your computer to your Check Point Management Server to some directory (for example, /var/log/).
- Connect to the command line on your Check Point Management Server.
- Log in to the Expert mode.
- Go to the directory with the offline package.
- Install the offline package on the Management Server:
autoupdatercli install /var/log/Check_Point_Autonomous_Firewall_Bundle_T<xx>_AutoUpdate.tar
Note: The installation does not require cpstop; cpstart or a reboot. Once installed, no further action is required, the update will be applied immediately.
Availability
How to check the currently installed Policy Insights Update package version
- Run this command on either the Management or Log Server:
# autoupdatercli show json | jq '.products[]|select(."product-name"=="AutonomousFirewall")'
2. Search for the "package-version" attribute.
Example:
{
"product-components": [
{
"GA-Version": "0",
"component-branch": "afw_AutoUpdate",
"component-name": "afw",
"download-action": "idle",
"download-scheduler-active": true,
"install-revert-action": "idle",
"install-scheduler-active": true,
"repository-packages": [
{
"installation-date": "2025-06-16_17:43:44",
"package-branch-name": "afw_AutoUpdate",
"package-installable": "true",
"package-installed": "true",
"package-name": "Check_Point_Autonomous_Firewall_Bundle_T71_FULL.tgz",
"package-previously-installed": "false",
"package-version": 71
}
]
}
],
"product-name": "AutonomousFirewall"
}
| Latest Take | Release Date | Download package | Versions |
| Take 97 | 19 Jul 2026 | (TAR) | For R82.10 and higher |
| (TAR) | For R81.20, R82 |
List of Resolved Issues and New Features per Policy Insights Update
| Feature/ Issue | Component | Description |
|---|---|---|
| Take 97 Gradual deployment from 19 July 2026 |
New Functionality and Improvements | Policy Insights |
| Policy Insights | ||
| Take 96 Gradual deployment from 28 June 2026 |
New Functionality and Improvements | Policy Auditor |
| Access Role Insights | ||
| Policy Insights License Enforcement | ||
| Take 94 Gradual deployment from 17 May 2026 |
New Functionality and Improvements | Identities |
| API v3.1 | ||
| Take 91 Gradual deployment from 05 Apr 2026 |
New Functionality and Improvements | User Configuration |
| Threat Prevention | ||
| R82.20 | ||
| Take 87 Gradual deployment from 15 Mar 2026 |
New Functionality and Improvements | NAT rules |
| Scheduled Tasks | ||
| Threat Prevention - show-suggestions API | ||
| Threat Prevention - Suggestion Decision Tracking | ||
| Resolved Issues | Threat Prevention - IPS logs | Log Telemetry |
| Empty name rule | API | |
| Missing data | Log Telemetry | |
| Take 82 (03 December 2025) | New Functionality and Improvements | Threat Prevention |
| Australia Region | Cloud Infrastructure | |
| Take 80 (25 November 2025) | New Functionality and Improvements | Key validation |
| Take 78 (03 November 2025) | New Functionality and Improvements | India Region |
| License Status in API | API | |
| Resolved Issues | Rule duplication | API |
| Rule name length | API | |
| UUID validation | API | |
| Take 77 (19 October 2025) | New Functionality and Improvements | Extended Metadata |
| Dialog Messages | API | |
| Take 76 (1 September 2025) | New Functionality and Improvements | API v2.0 |
| Rule Validation | API | |
| Take 74 (20 August 2025) | New Functionality and Improvements | Partial Suggestion Application |
| Suggestion Decision Tracking | API | |
| Layer-Optional Summary | API | |
| Take 72 (29 July 2025) | New Functionality and Improvements | Progress Indicator for Suggestions |
| Health Check Utility | Log Telemetry | |
| Take 71 (18 June 2025) | New Functionality and Improvements | Duplicate audit logs |
| System stability | Log Telemetry |
Article Properties
Access Level: General
Status: Approved
Date Created: 2025-05-07
Last Modified: 2026-07-19