
Adding a rule which explicitly allows ICMPv4 packet adds a rule which allows ICMPv6 packet. Stateful filtering of ICMPv6 packets is not supported on macOS. Remote Access VPN clients do not support the use of personal certificates as an authentication method, if the certificate is in storage on a SmartCard. Remote Access VPN clients do not support the use of a personal certificate as an authentication method if the saved certificate is on SmartCard. To address this issue user should perform reboot of operating system.Ī certificate for user authentication should be stored in the keychain when you use Secondary Connect. Delay may be from seconds to several minutes. In some rare cases during the upgrade of VPN client from previous version, user may experience temporary inability to connect to VPN site. SCV Compliance check ("Use Compliance Blade" state should be defined in order to enforce client compliance prior to VPN connection). Client will also not go into the assumed compliance state. Then, on the server side there will be no compliance reporting (inform, warn, restrict). cloned or edited, this rule will not be applied to the macOS Compliance blade. If the default name of the compliance rule for checking if assigned blades are running is changed, i.e. These Compliance checks are not supported: Remediation actions are not triggered on macOS.Įnvironment variables in path of checked files are not supportedĬompliance blade on macOS currently supports checks for these Anti-Virus vendors: The Forensics report does not show Network events. If nodeJS is installed on the Mac, build directories should be excluded in SBA policy (AR/EFR and TE) to improve performance. To avoid this, Check Point recommends MDM management tools to predefine the desired configurations. The Big Sur macOS, (and later) may ask users to grant access to security modules after some special activities. Only English is supported as the interface's language. Allowing users to disable network protection on their computers. Client user interface settings: configurations such as custom pre-boot and One Check images and appearance of tray icon.
These configurations in Common Client Settings Policy are not supported:
Time machine restore of a backup containing an Endpoint Security installation is not supported.Įndpoint Client User Interface Localization is not supported. Resolved in Endpoint Security E86.20 macOS Clients.Push Operations are ignored for macOS client. Time-limited installations are not supported.
Fallback to cloud is supported only starting from Endpoint Security E87.00 macOS Clients.Support added starting from Endpoint Security E86.80 macOS Clients.Emulation on local Threat Emulation (TE) appliances is supported