Advanced Settings
Quantum Spark 1500, 1600 and 1800 Appliance Series R80.20.40 Locally Managed Administration Guide | 147
Threat Prevention Threat
Emulation Policy Attribute
Description
Emulation connection
handling mode - POP3
Indicates the strictness mode the Threat Emulation engine
over POP3:
n
Background
- Connection are allowed while the file runs
(if needed)
n
Hold
- Connections are blocked until the file emulation is
completed.
Emulation connection
handling mode - SMTP
Indicates the strictness mode of the Threat Emulation engine
over SMTP:
n
Background
- Connections are allowed while the file
emulation runs (if needed)
n
Hold
- Connections are blocked until the file emulation is
completed.
Emulation location
Indicates if emulation is done on Public ThreatCloud or on
remote (private) SandBlast.
Primary emulation gateway
The IP address of the primary remote emulation gateway.
Table: Threat Prevention Threat Emulation Policy Attributes (continued)
Threat
Prevention
Policy
Attribute
Description
Block when
service is
unavailable
Block web requests traffic when the Check Point ThreatCloud online web
service is unavailable.
Fail mode
Indicates the action to take (
Allow all requests
or
Block all requests
) on
traffic in case of an internal system error or overload.
File inspection
size limit
Indicates the size limit (in KB) of a file inspected by Threat Prevention
engines.
Note
- A limit too low may have an impact on the functionality of the
Application Control blade. To specify no limit, set to 0.
Table: Threat Prevention Policy Attributes