> Source: [sk120332](https://support.checkpoint.com/results/sk/sk120332)

# sk120332 - Check Point PRO active support:  What is shared and configuration steps

| Property | Value |
|----------|-------|
| Solution ID | sk120332 |
| Date Created | 2017-09-04 |
| Last Modified | 2026-04-05 |
| Technical Level | General |
| Products | Other |
| Versions | Not Version-Specific |

## Solution

**Check Point PRO** uses data uploaded from Check Point Security Management and Security Gateways to provide a comprehensive diagnostics report with actionable insights.  

Check Point PRO Support combines security expertise and machine intelligence to monitor your management and security gateways daily and identify points of failure before they occur. When a severe issue is detected, a Check Point PRO expert proactively contacts you to help resolve the issue and prevent service downtime. Check Point PRO also provides you with a comprehensive report, delivering an overview of your overall security, diagnostics and actionable insights.
This article provides details on how information is shared, what type of data is uploaded and how data is handled.  

**Related SK articles** :   

* [How to Activate PRO](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk155212&partition=Basic&product=Other)
* [How to start a Trial of Check Point PRO support?](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk121072&partition=Basic&product=Other)
* [What does Check Point PRO support monitor?](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk167215&partition=Basic&product=Quantum)

<br />

*** ** * ** ***

### Supported Platforms/Versions

**Check Point PRO** is supported on any Check Point Appliance or Open Server that runs Gaia OS and on Scalable Platforms.

Minimum version requirements:

* R80.x
* R77.20.75\* for Small Business Appliances

**CloudGuard Network Security (NS) is supported under Pro Support.
Unsupported Products:** **Check Point PRO** is not supported for Harmony Endpoint, Harmony Connect, and SaaS CloudGuard installations. Support for these products is planned.  

*** ** * ** ***

### What data is collected and uploaded?

Technical parameters and metrics are gathered by the *cpdiag* tool. For additional information, refer to [sk167215 - What does Check Point PRO support monitor](https://support.checkpoint.com/results/sk/sk167215) as well as our privacy statement below.  
To see the actual file that is uploaded to Check Point, run this command on any Check Point device: `# `*cpdiag -nuk*  

The "-nuk" flags force the cpdiag tool to create the data file, but not upload it.  
An XML file is created - */tmp/data_file.xml.tmp*   
You can view it with any XML editor.  
The first part, which is the CPView database, is encoded, and the rest of the data is shown as clear text.  

*** ** * ** ***

### Privacy Statement

Check Point does not upload data that contains private or sensitive information. The uploaded data is packaged, encrypted and transported over SSL to Check Point User Center.  
No changes to the appliance are being made under Check Point's PRO support service. Check Point's PRO support service automatically updates the data collection agent, and this does not interfere with the appliance's operation or connectivity.  

Check Point is fully compliant with GDPR and at the same time there is no personally identifiable information collected under this service.   

Check Point's privacy policy describes Check Point's treatment and control of data:  
<https://www.checkpoint.com/privacy>  

*** ** * ** ***

### Performance Impact

The process of information collection and sharing has negligible impact on environment resources (CPU, Memory, Storage, Network) and zero impact on environment stability. The data is uploaded once a day at a random time between 1AM - 4AM (local device's time) and devices under heavy load (above 60% CPU) will skip reporting.  

*** ** * ** ***

### How the information sharing is enabled

Sharing information with Check Point is easily configured. Ensure your gateways have access to the following sites.

**Note -**Check Point can allow data through the management station, contact technical support to obtain a hotfix for this.

* updates.checkpoint.com
* services.checkpoint.com
* usercenter.checkpoint.com
* dl3.checkpoint.com
* crl.globalsign.com
* crl.godaddy.com

For all enterprise and high-end appliances via the *SmartConsole \> Global Properties.*

Both download and upload options have to be selected to ensure the service delivery. The images below show the settings for R81.20 and lower and R81.20 and higher versions:

|-------------------------------------------------------------------------------------------------------------------------------------------------------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| **In R81.10 and lower**                                                                                                                                     | **In R81.10 and higher**                                                                                                                                                    |
| [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk120332/R801709040427.png)](https://sc1.checkpoint.com/sc/SolutionsStatics/sk120332/R801709040427.png) | [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk120332/R81202303301307551.20.png)](https://sc1.checkpoint.com/sc/SolutionsStatics/sk120332/R81202303301307551.20.png) |

Once the setting is set, save the configuration and install the Security policy.

For **SMB**appliances, to enable customer consent for uploading data:

* On a *locally* managed appliance:

  In the Portal, on the **Advance Settings** page, enable the parameter **Privacy Settings** :  

  |--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
  | [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk120332/SMB Screen shotSK202104231001431.png)](https://sc1.checkpoint.com/sc/SolutionsStatics/sk120332/SMB%20Screen%20shotSK202104231001431.png "Click to see full size image") | [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk120332/SMB Screen shotSK2202104231002152.png)](https://sc1.checkpoint.com/sc/SolutionsStatics/sk120332/SMB%20Screen%20shotSK2202104231002152.png "Full Size") |

  <br />

* For a *centrally* managed appliance:

  In SmartConsole \> Global Properties.  
  Both download and upload options must be selected to ensure the service delivery.
* For a *cloud* managed (SMP) gateways:

  Run these Gaia Clish commands:  

  # do not share Diagnostic Data

  ***set privacy-settings advanced-settings customer-consent \[true\|false\]***

  # does not share analytics data. this is statistics related to feature usage**set privacy-settings advanced-settings enable-analytics-events \[true\|false\]**

For additional information, see [sk111080](https://support.checkpoint.com/results/sk/sk111080 "How to configure Check Point software to upload data to Check Point / download data from Check Point").

*** ** * ** ***

****How to Activate Check Point PRO Support:****  
00:07: Check Point PRO support requires two steps in order to leverage full PRO support coverage.

00:13: Step one.

00:14: We will enable your checkpoint estate to report to our diagnostic servers.

00:19: To start, please open your smart console.

00:23: Once Smart Console loads,

00:26: you can open

00:27: global Properties

00:28: and look for the data Access Control section on the left.

00:32: We'll select three options from data access control.

00:37: Number One automatically download and install software blade contracts.

00:42: Automatically download software, updates, and new features and help checkpoint improve the product by sending Anonymous information.

00:50: These three settings will ensure that your Check Point Pro support works without interruption.

00:57: When you hit OK, you can then install database

01:02: Your devices are now enabled to share diagnostics

01:09: The next step in order to ensure that Check Point Pro is fully activated is to set

01:14: a PRO contact. Please go to the Check Point support site and Checkpoint Pro report portal.

01:20: In the portal, you will see a list of your pro support accounts and have the ability to manage your PRO contacts.

01:27: From the managed contacts page administrators will have the option to enable procontact status.

01:35: Changing, your procontact can be updated at any time on the Fly.

01:41: All users within this account, will have the ability to view the pro report.

01:47: only the procontact will be assigned any proactive service requests which are opened

01:54: Once you've completed those two steps, you will be able to view your reporting devices in the Pro report.

02:01: If you have any issues getting activation or you have missing

02:05: devices, please reach out to contact underscore pro at checkpoint.com.

02:12: Or create a service request with our tag team.

02:15: Thank you

<br />

There are two steps to complete in order to get the full service of daily reports and ticket creation for critical events.  

1. Designate a user as your PRO support contact in case of high severity proactive SR creation.  
   The PRO contact needs to be a 'support contact' attached to the account. In cases of collaborative support, the PRO contact \**must* \* be a partner contact.  

   **You can modify this in User Center \> Support Services \> Check Point PRO report \> "Manage Contacts"**
2. Enable your gateways to share data as outlined above.  

   Once you enable the reporting to our server, you can view your daily report via the Check Point [PRO Report](http://usercenter.checkpoint.com/usercenter/CheckPointPRO) (User Center \> Support Services \> Check Point PRO report) in the User Center to check your diagnostic report.

**Missing devices? See [sk117276](https://support.checkpoint.com/results/sk/sk117276 "Devices are missing from the Check Point PRO report").**

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
