{"id":29991,"date":"2019-10-31T21:33:06","date_gmt":"2019-10-31T18:33:06","guid":{"rendered":"https:\/\/prohoster.info\/blog\/check-point-chto-eto-s-chem-ego-edyat-ili-korotko-o-glavnom\/"},"modified":"2019-10-31T21:33:06","modified_gmt":"2019-10-31T18:33:06","slug":"check-point-chto-eto-s-chem-ego-edyat-ili-korotko-o-glavnom","status":"publish","type":"post","link":"https:\/\/prohoster.info\/en\/blog\/check-point-chto-eto-s-chem-ego-edyat-ili-korotko-o-glavnom","title":{"rendered":"Check Point. What is it, how does it work, or a brief overview","gt_translate_keys":[{"key":"rendered","format":"text"}]},"content":{"rendered":"<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/6820c37cf951e81105cc10c54117e5c4.PNG\" style=\"display:block;margin: 0 auto;\" \/><br \/>\nHello, dear readers of Habr! This is the corporate blog of the company <noindex><a rel=\"nofollow\" href=\"http:\/\/tssolution.ru\/\">TS Solution<\/a><\/noindex>. We are a systems integrator primarily specializing in IT infrastructure security solutions (<noindex><a rel=\"nofollow\" href=\"http:\/\/tssolution.ru\/checkpoint\/\">Check Point<\/a><\/noindex>, <noindex><a rel=\"nofollow\" href=\"http:\/\/tssolution.ru\/fortinet\/\">Fortinet<\/a><\/noindex>) and machine data analysis systems (<noindex><a rel=\"nofollow\" href=\"http:\/\/tssolution.ru\/splunk\/\">Splunk<\/a><\/noindex>). We'll start our blog with a brief introduction to Check Point technologies.<\/p>\n<p>We pondered for a long time whether to write this article, as it does not contain anything new that cannot be found online. However, despite the abundance of information, we often hear the same questions from clients and partners. Thus, we decided to provide an introduction to the world of Check Point technologies and explain the essence of their solution architectures. All this will be covered in a 'small' post, a quick excursion, if you will. Moreover, we will try to avoid marketing wars, as we are not a vendor, just a system integrator (though we do love Check Point) and will simply cover the main points without comparing them to other manufacturers (such as Palo Alto, Cisco, Fortinet, etc.). The article turned out to be quite extensive, but it cuts out a lot of questions at the stage of getting acquainted with Check Point. If you are interested, welcome below the fold...<br \/>\n<noindex><a rel=\"nofollow\" name=\"habracut\"><\/a><\/noindex><br \/>\n<b>UTM\/NGFW<\/b><\/p>\n<p>When starting a discussion about Check Point, the first thing worth mentioning is the explanation of what UTM and NGFW are and how they differ. We will do this quite concisely, so the post doesn\u2019t get too lengthy (perhaps in the future, we will explore this topic in a bit more detail).<\/p>\n<p><b>UTM \u2014 Unified Threat Management<\/b><\/p>\n<p>In short, the essence of UTM is the consolidation of multiple security tools into a single solution. That is, everything in one box or some sort of all-inclusive package. What do we mean by 'multiple security tools'? The most common configuration includes: Firewall, IPS, Proxy (URL filtering), Stream Antivirus, Anti-Spam, VPN, and so on. All of this is integrated within one UTM solution, which simplifies integration, setup, administration, and monitoring, positively impacting the overall security of the network. When UTM solutions first appeared, they were considered exclusively for small companies, as UTM struggled to handle high traffic volumes. This was due to two reasons:<\/p>\n<ol>\n<li>Packet processing methods. The first versions of UTM solutions processed packets sequentially, one by one through each 'module.' For example, a packet would first be processed by the firewall, then by IPS, followed by a check from the Antivirus, and so on. Naturally, this mechanism introduced significant delays in traffic and heavily consumed system resources (CPU, memory).<\/li>\n<li>Weak 'hardware.' As mentioned earlier, sequential packet processing significantly drained resources, and the 'hardware' of that era (1995-2005) simply couldn't handle large traffic.<\/li>\n<\/ol>\n<p>\nBut progress does not stand still. Since then, hardware capabilities have greatly increased, and packet processing has evolved (it must be acknowledged, not all vendors kept up) to allow for almost simultaneous analysis across multiple modules (FW, IPS, Antivirus, etc.). Modern UTM solutions can 'digest' tens or even hundreds of gigabits in deep analysis mode, enabling their use in large business segments or even data centers.<\/p>\n<p>Below is the famous Gartner Magic Quadrant for UTM solutions as of August 2016:<\/p>\n<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/b42345dbee2ba2a0db0694e99b97b0bb.PNG\" style=\"display:block;margin: 0 auto;\" \/><br \/>\n<br \/>\nI won\u2019t comment much on this image, just to say that the leaders are in the upper right corner.<\/p>\n<p><b>NGFW \u2014 Next Generation Firewall<\/b><\/p>\n<p>The name speaks for itself \u2014 next-generation firewall. This concept emerged significantly later than UTM. The main idea of NGFW is deep packet inspection (DPI) using built-in IPS and application-level access control (Application Control). In this case, IPS is necessary to identify specific applications in the stream of packets, allowing for their permission or prohibition. For example: We can allow Skype to operate but prohibit file transfers. We can block the use of Torrent or RDP. Web applications are also supported: Access to VK.com can be permitted while prohibiting games, messages, or video viewing. Essentially, the quality of NGFW depends on the number of applications it can identify. Many believe that the introduction of NGFW was merely a marketing move that coincided with the rapid growth of Palo Alto.<\/p>\n<p>The Gartner Magic Quadrant for NGFW as of May 2016:<\/p>\n<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/cd70f41e8430722fa219de51650c78b4.PNG\" style=\"display:block;margin: 0 auto;\" \/><br \/>\n<br \/>\n<b>UTM vs NGFW<\/b><\/p>\n<p>A very common question is, what is better? There is no definitive answer, and there may never be. Especially considering that almost all modern UTM solutions contain NGFW functionality and most NGFW have features typical of UTM (Antivirus, VPN, Anti-Bot, etc.). As always, \u201cthe devil is in the details,\u201d so first you need to decide what you specifically need and determine your budget. Based on these decisions, you can choose several options. And everything should definitely be tested, without believing marketing materials.<\/p>\n<p>In several articles, we will attempt to discuss Check Point, how you can try it out, and what functionalities are generally available (almost all of them).<\/p>\n<p><b>Three entities of Check Point<\/b><\/p>\n<p>When working with Check Point, you will inevitably encounter three components of this product:<\/p>\n<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/ed77422e6884fd8a677ae174fb901e93.PNG\" style=\"display:block;margin: 0 auto;\" \/><br \/>\n<\/p>\n<ol>\n<li><b>Security Gateway (SG)<\/b> \u2014 the actual security gateway, which is usually placed on the network perimeter and performs functions of a firewall, streaming antivirus, anti-bot, IPS, etc.<\/li>\n<li><b>Security Management Server (SMS)<\/b> \u2014 the management server for gateways. Almost all settings on the gateway (SG) are configured through this server. SMS can also act as a log server and process logs with its built-in event analysis and correlation system\u2014Smart Event (similar to SIEM for Check Point), but we will discuss this a bit later. SMS is used for centralized management of multiple gateways (the number of gateways depends on the SMS model or license), but you must use it even if you have only one gateway. It is worth mentioning that Check Point was one of the first to implement such a centralized management system, which has been recognized as the \u201cgold standard\u201d in reports by Gartner for many years. There\u2019s even a joke: \u201cIf Cisco had a proper management system, Check Point would have never appeared.\u201d<\/li>\n<li><b>Smart Console<\/b> \u2014 a client console for connecting to the management server (SMS). It is usually installed on the administrator's computer. All changes on the management server are made through this console, and only after that can the settings be applied to the security gateways (Install Policy).\n<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/e684c5ee08d45c868e15225e2a64fccb.PNG\" style=\"display:block;margin: 0 auto;\" \/>\n<\/li>\n<\/ol>\n<p>\n<b>Check Point Operating System<\/b><\/p>\n<p>Speaking of the Check Point operating system, three versions come to mind: IPSO, SPLAT, and GAIA.<\/p>\n<ol>\n<li><b>IPSO<\/b> \u2014 the operating system from Ipsilon Networks, which belonged to Nokia. In 2009, Check Point acquired this business. It is no longer being developed.<\/li>\n<li><b>SPLAT<\/b> \u2014 a proprietary development from Check Point, based on the RedHat kernel. It is no longer being developed.<\/li>\n<li><b>Gaia<\/b> \u2014 the current operating system from Check Point, which emerged from the merger of IPSO and SPLAT, incorporating the best features. It was introduced in 2012 and continues to be actively developed.<\/li>\n<\/ol>\n<p>\nSpeaking of Gaia, it should be noted that the most widely used version at the moment is R77.30. A relatively recent version R80 has appeared, which differs significantly from the previous one (both in functionality and management). We will dedicate a separate post to their differences. Another important point is that currently the FSTEC certification is only available for version R77.10, and the certification for version R77.30 is in progress.<\/p>\n<p><b>Deployment options (Check Point Appliance, Virtual machine, OpenServer)<\/b><\/p>\n<p>There is nothing surprising here; like many vendors, Check Point has several product variations:<\/p>\n<ol>\n<li><b>Appliance<\/b> \u2014 a hardware-software device, i.e., their own \"hardware.\" There are many models that differ in performance, functionality, and form factor (there are options for industrial networks).\n<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/430a65143ac9d26defd59bd209eeaf50.PNG\" style=\"display:block;margin: 0 auto;\" \/><\/li>\n<li><b>Virtual Machine<\/b> \u2014 a Check Point virtual machine with the Gaia OS. Supported hypervisors include ESXi, Hyper-V, KVM. Licensing is based on the number of CPU cores.<\/li>\n<li><b>OpenServer<\/b> \u2014 installation of Gaia directly on a server as the primary operating system (commonly referred to as \"Bare metal\"). Only certain \"hardware\" is supported. There are recommendations for this hardware that need to be followed; otherwise, there may be problems with drivers, and technical support may refuse to provide service.<\/li>\n<\/ol>\n<p>\n<b>Deployment options (Distributed or Standalone)<\/b><\/p>\n<p>We previously discussed what a gateway (SG) and a management server (SMS) are. Now let's explore their deployment options. There are two main methods:<\/p>\n<ol>\n<li><b>Standalone (SG+SMS)<\/b> \u2014 an option where both the gateway and the management server are installed on a single device (or virtual machine).\n<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/5bce1b2115d186c6743e4918c2985c1b.PNG\" style=\"display:block;margin: 0 auto;\" \/><br \/>\n<br \/>\nThis option is suitable when you have only one gateway that is lightly loaded with user traffic. This option is the most economical since there is no need to purchase a management server (SMS). However, under significant load on the gateway, you may experience a 'sluggish' management system. Therefore, before choosing a Standalone solution, it is best to consult or even test this option.<\/p>\n<\/li>\n<li><b>Distributed<\/b> \u2014 the management server is installed separately from the gateway.\n<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/e7e0e9e80c33297bf8eab49cb3d0cff0.PNG\" style=\"display:block;margin: 0 auto;\" \/><br \/>\n<br \/>\nThe optimal choice in terms of convenience and performance. It is used when it is necessary to manage multiple gateways at once, such as a central one and branch offices. In this case, a management server (SMS) must be purchased, which can also be in the form of an appliance (hardware) or a virtual machine.<\/li>\n<\/ol>\n<p>\nAs I mentioned a bit earlier, Check Point has its own SIEM system \u2014 Smart Event. You will only be able to use it in the case of a Distributed installation.<\/p>\n<p><b>Operating modes (Bridge, Routed)<\/b><br \/>\nThe security gateway (SG) can operate in two main modes:<\/p>\n<ul>\n<li><b>Routed<\/b> \u2014 the most common option. In this case, the gateway is used as an L3 device and routes traffic through itself, i.e., Check Point is the default gateway for the protected network.<\/li>\n<li><b>Bridge<\/b> \u2014 transparent mode. In this case, the gateway is set up like a regular 'bridge' and passes traffic at the second level (OSI). This option is usually applied when there is no possibility (or desire) to change the existing infrastructure. You will almost not have to change the network topology and there is no need to think about changing IP addressing. <\/li>\n<\/ul>\n<p>\nIt should be noted that in Bridge mode there are certain limitations on functionality, so we, as integrators, advise all our clients to use the Routed mode, of course, if possible.<\/p>\n<p><b>Software blades (Check Point Software Blades)<\/b><\/p>\n<p>We have reached perhaps the main topic of Check Point, which raises the most questions for clients. What are these 'software blades'? The blades refer to specific functions of Check Point.<\/p>\n<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/fabbef019d35d282a389f019b8c45741.PNG\" style=\"display:block;margin: 0 auto;\" \/><br \/>\n<br \/>\nThese functions can be enabled or disabled depending on needs. There are blades that are activated exclusively on the gateway (Network Security) and only on the management server (Management). The images below provide examples for both cases:<\/p>\n<p><b>1) For Network Security<\/b> (gateway functionality)<\/p>\n<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/cc422e96ad44268cbe82b97d0bc012cb.PNG\" style=\"display:block;margin: 0 auto;\" \/><br \/>\n<br \/>\nWe'll briefly outline this as each blade deserves its own article. <\/p>\n<ul>\n<li>Firewall \u2014 functionality of a firewall;<\/li>\n<li>IPSec VPN \u2014 building private virtual networks;<\/li>\n<li>Mobile Access \u2014 remote access from mobile devices;<\/li>\n<li>IPS \u2014 intrusion prevention system;<\/li>\n<li>Anti-Bot \u2014 protection against botnet networks;<\/li>\n<li>AntiVirus \u2014 stream antivirus;<\/li>\n<li>AntiSpam &amp; Email Security \u2014 protection for corporate email;<\/li>\n<li>Identity Awareness \u2014 integration with Active Directory service;<\/li>\n<li>Monitoring \u2014 monitoring of almost all gateway parameters (load, bandwidth, VPN status, etc.)<\/li>\n<li>Application Control \u2014 application-level firewall (NGFW functionality);<\/li>\n<li>URL Filtering \u2014 Web security (+proxy functionality);<\/li>\n<li>Data Loss Prevention \u2014 protection against data leaks (DLP);<\/li>\n<li>Threat Emulation \u2014 sandbox technology;<\/li>\n<li>Threat Extraction \u2014 file cleansing technology;<\/li>\n<li>QoS \u2014 traffic prioritization.<\/li>\n<\/ul>\n<p>\nIn just a few articles, we will take a closer look at the Threat Emulation and Threat Extraction blades, I am sure it will be interesting.<\/p>\n<p><b>2) For Management<\/b> (management server functionality)<\/p>\n<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/239913ca3fd826ddde5938a8763faf83.PNG\" style=\"display:block;margin: 0 auto;\" \/><br \/>\n<\/p>\n<ul>\n<li>Network Policy Management \u2014 centralized policy management;<\/li>\n<li>Endpoint Policy Management \u2014 centralized management of Check Point agents (yes, Check Point produces solutions not only for network security but also for the protection of workstations (PCs) and smartphones);<\/li>\n<li>Logging &amp; Status \u2014 centralized collection and processing of logs;<\/li>\n<li>Management Portal \u2014 security management from the browser;<\/li>\n<li>Workflow \u2014 control over policy changes, audit of changes, etc.;<\/li>\n<li>User Directory \u2014 integration with LDAP;<\/li>\n<li>Provisioning \u2014 automation of gateway management;<\/li>\n<li>Smart Reporter \u2014 reporting system;<\/li>\n<li>Smart Event \u2014 analysis and correlation of events (SIEM);<\/li>\n<li>Compliance \u2014 automatic configuration checks and recommendations.<\/li>\n<\/ul>\n<p>\nWe will not delve into licensing issues right now to avoid inflating the article and confusing the reader. Most likely, we will cover this in a separate post.<\/p>\n<p>The architecture of the blades allows for the use of only the truly necessary functions, which reflects on the budget of the solution and the overall performance of the device. Logically, the more blades you activate, the less traffic can be 'pushed through'. That is why each Check Point model comes with the following performance table (for example, we took the specifications of the 5400 model):<\/p>\n<p><img decoding=\"async\" alt=\"Check Point. What is it, how does it work, or a brief overview\" src=\"\/wp-content\/uploads\/2019\/03\/15f9faf773f707db3cb7cdef233e3eec.PNG\" style=\"display:block;margin: 0 auto;\" \/><br \/>\n<br \/>\nAs you can see, there are two categories of tests presented here: synthetic traffic tests and real \u2014 mixed traffic tests. Generally speaking, Check Point is compelled to publish synthetic tests because some vendors use such tests as benchmarks without investigating the performance of their solutions on real traffic (or intentionally conceal such data due to its unsatisfactory nature).<\/p>\n<p>In each type of test, you can notice several variants: <\/p>\n<ol>\n<li>test for Firewall only;<\/li>\n<li>test for Firewall+IPS;<\/li>\n<li>test for Firewall+IPS+NGFW (Application control);<\/li>\n<li>test for Firewall+Application Control+URL Filtering+IPS+Antivirus+Anti-Bot+SandBlast (sandbox)<\/li>\n<\/ol>\n<p>\nPay close attention to these parameters when selecting your solution, or consult for assistance <noindex><a rel=\"nofollow\" href=\"http:\/\/tssolution.ru\/checkpoint\/\">consultation<\/a><\/noindex>.<\/p>\n<p>I think we can conclude this introductory article dedicated to Check Point technologies. Next, we will examine how to test Check Point and how to combat modern cybersecurity threats (viruses, phishing, ransomware, zero-day).<\/p>\n<p>P.S. An important point. Despite its foreign (Israeli) origin, the solution has certification in Russia from supervisory authorities, which automatically legalizes its presence in government institutions (comment by <noindex><a rel=\"nofollow\" href=\"https:\/\/habrahabr.ru\/users\/denyemall\/\" class=\"user_link\">Denyemall<\/a><\/noindex>).<\/p>\n<p class=\"for_users_only_msg\">Only registered users can participate in the survey. <noindex><a rel=\"nofollow\" href=\"https:\/\/habr.com\/ru\/auth\/login\/\">Please log in<\/a><\/noindex>, please.<\/p>\n<h2 class=\"default-block__polling-title\">What UTM\/NGFW solutions do you use?<\/h2>\n<ul class=\"content-list content-list_polling\">\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Check Point<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Cisco Firepower<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Fortinet<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Palo Alto<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Sophos<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Dell SonicWALL<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Huawei<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    WatchGuard<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Juniper<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    UserGate<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Traffic inspector<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Rubicon<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Ideco<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    OpenSource solution<\/p>\n<\/li>\n<li class=\"content-list__item content-list__item_polling\">\n<p>                    Other<\/p>\n<\/li>\n<\/ul>\n<p>    134 users voted. 78 users abstained.<br \/>\n<br \/>Source: <a content=\"nofollow\" rel=\"nofollow\" href=\"https:\/\/habr.com\/ru\/company\/tssolution\/blog\/323606\/\">habr.com<\/a><\/p>","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"excerpt":{"rendered":"<p>\u0417\u0434\u0440\u0430\u0432\u0441\u0442\u0432\u0443\u0439\u0442\u0435, \u0443\u0432\u0430\u0436\u0430\u0435\u043c\u044b\u0435 \u0447\u0438\u0442\u0430\u0442\u0435\u043b\u0438 \u0445\u0430\u0431\u0440\u0430! \u042d\u0442\u043e \u043a\u043e\u0440\u043f\u043e\u0440\u0430\u0442\u0438\u0432\u043d\u044b\u0439 \u0431\u043b\u043e\u0433 \u043a\u043e\u043c\u043f\u0430\u043d\u0438\u0438 TS Solution. \u041c\u044b \u044f\u0432\u043b\u044f\u0435\u043c\u0441\u044f \u0441\u0438\u0441\u0442\u0435\u043c\u043d\u044b\u043c \u0438\u043d\u0442\u0435\u0433\u0440\u0430\u0442\u043e\u0440\u043e\u043c \u0438 \u043f\u043e \u0431\u043e\u043b\u044c\u0448\u0435\u0439 \u0447\u0430\u0441\u0442\u0438 \u0441\u043f\u0435\u0446\u0438\u0430\u043b\u0438\u0437\u0438\u0440\u0443\u0435\u043c\u0441\u044f \u043d\u0430 \u0440\u0435\u0448\u0435\u043d\u0438\u044f\u0445 \u0431\u0435\u0437\u043e\u043f\u0430\u0441\u043d\u043e\u0441\u0442\u0438 \u0418\u0422-\u0438\u043d\u0444\u0440\u0430\u0441\u0442\u0440\u0443\u043a\u0442\u0443\u0440\u044b (Check Point, Fortinet) \u0438 \u0441\u0438\u0441\u0442\u0435\u043c\u0430\u0445 \u0430\u043d\u0430\u043b\u0438\u0437\u0430 \u043c\u0430\u0448\u0438\u043d\u043d\u044b\u0445 \u0434\u0430\u043d\u043d\u044b\u0445 (Splunk). \u041d\u0430\u0447\u043d\u0435\u043c \u043c\u044b \u043d\u0430\u0448 \u0431\u043b\u043e\u0433 \u0441 \u043d\u0435\u0431\u043e\u043b\u044c\u0448\u043e\u0433\u043e \u0432\u0432\u0435\u0434\u0435\u043d\u0438\u044f \u0432 \u0442\u0435\u0445\u043d\u043e\u043b\u043e\u0433\u0438\u0438 Check Point. \u041c\u044b \u0434\u043e\u043b\u0433\u043e \u0440\u0430\u0437\u043c\u044b\u0448\u043b\u044f\u043b\u0438 \u043d\u0430\u0434 \u0442\u0435\u043c, \u0441\u0442\u043e\u0438\u0442 \u043b\u0438 \u043f\u0438\u0441\u0430\u0442\u044c \u0434\u0430\u043d\u043d\u0443\u044e \u0441\u0442\u0430\u0442\u044c\u044e, \u0442.\u043a. \u0432 [&hellip;]<\/p>\n","protected":false,"gt_translate_keys":[{"key":"rendered","format":"html"}]},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[],"tags":[],"class_list":["post-29991","post","type-post","status-publish","format-standard","hentry"],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<meta name=\"author\" content=\"Yuri Gagarin\"\/>\n\t<link rel=\"canonical\" href=\"https:\/\/prohoster.info\/en\/blog\/check-point-chto-eto-s-chem-ego-edyat-ili-korotko-o-glavnom\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"en_US\" \/>\n\t\t<meta property=\"og:site_name\" content=\"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"\ud83e\udd47Check Point. \u0427\u0442\u043e \u044d\u0442\u043e, \u0441 \u0447\u0435\u043c \u0435\u0433\u043e \u0435\u0434\u044f\u0442 \u0438\u043b\u0438 \u043a\u043e\u0440\u043e\u0442\u043a\u043e \u043e \u0433\u043b\u0430\u0432\u043d\u043e\u043c | ProHoster\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/prohoster.info\/en\/blog\/check-point-chto-eto-s-chem-ego-edyat-ili-korotko-o-glavnom\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg\" \/>\n\t\t<meta property=\"og:image:width\" content=\"350\" \/>\n\t\t<meta property=\"og:image:height\" content=\"350\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2019-10-31T18:33:06+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2019-10-31T18:33:06+00:00\" \/>\n\t\t<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/prohoster\" \/>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"\ud83e\udd47Check Point. What is it, how does it work, or a brief overview | ProHoster","description":"","canonical_url":"https:\/\/prohoster.info\/en\/blog\/check-point-chto-eto-s-chem-ego-edyat-ili-korotko-o-glavnom","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":null,"og:locale":"en_US","og:site_name":"ProHoster | \u041a\u0443\u043f\u0438\u0442\u044c \u043d\u0430\u0434\u0435\u0436\u043d\u044b\u0439 \u0445\u043e\u0441\u0442\u0438\u043d\u0433 \u0434\u043b\u044f \u0441\u0430\u0439\u0442\u043e\u0432 \u0441 \u0437\u0430\u0449\u0438\u0442\u043e\u0439 \u043e\u0442 DDoS, VPS VDS \u0441\u0435\u0440\u0432\u0435\u0440\u044b","og:type":"article","og:title":"\ud83e\udd47Check Point. \u0427\u0442\u043e \u044d\u0442\u043e, \u0441 \u0447\u0435\u043c \u0435\u0433\u043e \u0435\u0434\u044f\u0442 \u0438\u043b\u0438 \u043a\u043e\u0440\u043e\u0442\u043a\u043e \u043e \u0433\u043b\u0430\u0432\u043d\u043e\u043c | ProHoster","og:url":"https:\/\/prohoster.info\/en\/blog\/check-point-chto-eto-s-chem-ego-edyat-ili-korotko-o-glavnom","og:image":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:secure_url":"https:\/\/prohoster.info\/wp-content\/uploads\/2021\/11\/logo-350.jpg","og:image:width":350,"og:image:height":350,"article:published_time":"2019-10-31T18:33:06+00:00","article:modified_time":"2019-10-31T18:33:06+00:00","article:publisher":"https:\/\/www.facebook.com\/prohoster","article:author":"https:\/\/www.facebook.com\/prohoster"},"aioseo_meta_data":{"post_id":"29991","title":null,"description":null,"keywords":null,"keyphrases":null,"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":null,"og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"Article","isEnabled":true},"graphs":[]},"schema_type":null,"schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":null,"robots_max_videopreview":null,"robots_max_imagepreview":"large","priority":null,"frequency":null,"local_seo":null,"seo_analyzer_scan_date":"2026-01-20 23:19:19","breadcrumb_settings":null,"limit_modified_date":false,"reviewed_by":null,"ai":null,"created":"2021-03-01 03:44:39","updated":"2026-01-20 23:19:19","focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"gt_translate_keys":[{"key":"link","format":"url"}],"_links":{"self":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/29991","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/comments?post=29991"}],"version-history":[{"count":0,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/posts\/29991\/revisions"}],"wp:attachment":[{"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/media?parent=29991"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/categories?post=29991"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/prohoster.info\/en\/wp-json\/wp\/v2\/tags?post=29991"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}