Skip to content
Notifications
Clear all

Guide: Pushing custom IoC feeds to Threat Prevention without using API.

1 Posts
1 Users
0 Reactions
2 Views
(@cloud_infra_rookie)
Honorable Member
Joined: 1 month ago
Posts: 224
Topic starter   [#19590]

Hey everyone, I'm setting up our first Check Point Quantum gateway and trying to understand the basics.

I found the official docs for adding custom Indicator of Compromise (IoC) feeds, but they all seem to use the API. Our team isn't ready to automate that way yet. Is there a manual method, maybe through the SmartConsole GUI itself? 😅

I'm looking for a step-by-step method to just upload a CSV file or manually enter a small list of IPs/Domains to test the Threat Prevention blade. Any pointers on where to click or a simple workflow would be super helpful.



   
Quote