156-215.80 · Question #233
According to Check Point Best Practice, when adding a 3rd party gateway to a Check Point security solution what object SHOULD be added? A(n):
The correct answer is A. Interoperable Device. Check Point recommends using an Interoperable Device object to represent third-party gateways in a Check Point security solution, enabling VPN interoperability without implying Check Point management.
Question
According to Check Point Best Practice, when adding a 3rd party gateway to a Check Point security solution what object SHOULD be added? A(n):
Options
- AInteroperable Device
- BNetwork Node
- CExternally managed gateway
- DGateway
How the community answered
(50 responses)- A88% (44)
- B8% (4)
- C2% (1)
- D2% (1)
Why each option
Check Point recommends using an Interoperable Device object to represent third-party gateways in a Check Point security solution, enabling VPN interoperability without implying Check Point management.
An Interoperable Device is the Check Point object type specifically designed for third-party VPN gateways and security devices. It allows Check Point to establish VPN tunnels and define topology with non-Check Point devices without treating them as Check Point-managed gateways. This is the documented best practice for integrating third-party firewalls, routers, or UTM devices into a Check Point VPN community.
A Network Node object represents a simple host or endpoint on the network, not a gateway or routing device, and cannot be placed in a VPN community.
Externally Managed Gateway is used for Check Point gateways managed by a separate Check Point management server, not for third-party vendor devices.
A Gateway object is reserved for Check Point-native gateways under the same management domain and cannot properly represent third-party device capabilities or VPN settings.
Concept tested: Check Point Interoperable Device for third-party VPN integration
Source: https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_SecurityManagement_AdminGuide/Topics-SECMG/Interoperable-Device.htm
Topics
Community Discussion
No community discussion yet for this question.