Configuring UserCheck

Enable or disable UserCheck directly on the Security Gateway Dedicated Check Point server that runs Check Point software to inspect traffic and enforce Security Policies for connected network resources. . If users connect to the Security Gateway remotely, set the internal interface of the Security Gateway (on the Topology page) to be the same as the Main URL for the UserCheck Portal .

Go to the gateway editor, > UserCheck , and select Enable UserCheck for active blades .

In the UserCheck Web Portal section:

The Main URL field shows the primary URL for the web portal that shows the UserCheck notifications.

You can use the suggested Main URL or manually enter a different Main URL .

Note - The Main URL field contains an IP address and not a DNS name. Update the Main URL field If you change a Security Gateway 's IPv4 address to IPv6 address, or the other way around, .

Click Aliases to add URL aliases that redirect different hostnames to the Main URL . For example: Usercheck.mycompany.com

The aliases must be resolved to the portal IP address on the corporate DNS server.

By default, the portal uses a certificate from the Check Point Internal Certificate Authority (ICA Internal Certificate Authority. A component on Check Point Management Server that issues certificates for authentication. ). This might generate warnings if the user browser does not recognize Check Point as a trusted Certificate Authority . To prevent these warnings, import your own certificate from a recognized external authority.

Note - After you download your certificate, you can click Replace to replace it with a different certificate, and click View to see the certificate information.

In the Accessibility section, click Edit to configure interfaces on the Security Gateway through which the portal can be accessed. These options are based on the topology configured for the Security Gateway . The topology must be configured.