Checkpoint Firewall configuration reference
Look up the values you enter in the create wizard. For the step-by-step flow, see Create a Checkpoint Firewall.
Basic Configuration
| Field | Values | Notes |
|---|---|---|
| Region | Current region of the org | Fixed to your org's region |
| VPC | Any VPC you own | Must have free isolate subnets and IPs |
| Firewall Type | Checkpoint | Only supported type today |
| Package Type | NGFW, NGTP, NGTX | See package types below |
| Template | Standard, Advance, Premium | See template specs below |
| High Availability | Enabled / Disabled | Enabled adds a Slave gateway |
Package types
| Package | Description |
|---|---|
| NGFW | Next-Generation Firewall — core firewall capabilities |
| NGTP | Next-Generation Threat Prevention |
| NGTX | Next-Generation Threat Extraction |
Template specs
| Template | vCPU | RAM | Storage |
|---|---|---|---|
| Standard | 2 vCPU | 4 GB | 100 GB |
| Advance | 4 vCPU | 8 GB | 100 GB |
| Premium | 4 vCPU | 16 GB | 100 GB |
Host Information fields
| Field | Applies to | Description |
|---|---|---|
| Name | All hosts | Display name for the host |
| CPU | All hosts | Defaults to the selected Template |
| RAM | All hosts | Defaults to the selected Template |
| Disk | All hosts | Defaults to the selected Template |
| Password | Master (host login) | Console/SSH password; separate from the emailed maintenance account |
| Subnet | Master | Select an isolate subnet |
| Subnet | Slave | Inherited from the Master |
| Private IP | Master, Slave | Optional; blank auto-assigns (1 IP without HA, 3 with HA) |
IP and subnet requirements
| Resource | Without HA | With HA |
|---|---|---|
| Free isolate subnets | 3 | 3 |
| Free public IPs (auto) | 1 | 3 |
| Auto-assigned private IPs | 1 | 3 |