> Source: [sk154212](https://support.checkpoint.com/results/sk/sk154212)

# sk154212 - "The policy for the selected blades cannot be installed on Gateway 'LSM-Profile'" when installing  a Threat Prevention policy on an LSM profile

| Property | Value |
|----------|-------|
| Solution ID | sk154212 |
| Date Created | 2019-06-02 |
| Last Modified | 2022-01-30 |
| Technical Level | General |
| Products | Security Management Server |
| Versions | R82.10, R82, R81.20, R82.20 |
| OS | Gaia |

## Symptoms

- * Threat Prevention policy installation from SmartConsole on an LSM profile fails with the following error: "`The policy for the selected blades cannot be installed on Gateway 'LSM-Profile'`".

  ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk154212/Untitled11906030442.png)
* "Unknow CPRID Error #-1" error appears in the SmartProvisioning window after the Threat Prevention policy installation fails.
* Connecting to the SMB device Gaia Portal WebUI shows that Threat Prevention Blades (IPS, Anti-Virus, Anti-Bot) are turned on.
* In the same scenario, the regular Access Control policy installs successfully.
* When both Access Control and Threat Prevention are installed, SmartConsole shoes that Access Control is installed, but not Threat Prevention.
* Debug on the Management side:

  ```
  
  [Expert@MGMT]# fwm load -p threatprevention shows
  Installing policy on Antimalware compatible targets:
  AMW__:
  Compiled OK.
  AMW__:
  Compiled OK.
  Anti-Bot & Anti-Virus Policy installed successfully on ...
  
  Anti-Bot & Anti-Virus Policy installation complete
  Anti-Bot & Anti-Virus Policy installation succeeded for:
  
  ```

* Output of *# fw stat -b AMW* from an SMB appliace shows that the blades are disabled.

## Solution

This problem was fixed. The fix is included starting from:

* [Check Point R80.40](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk160736)

Check Point recommends to always upgrade to the most recent version   
([upgrade Security Gateway](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=overview&product=435) / [upgrade Security Management Server](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=overview&product=184) / [upgrade Multi-Domain Security Management](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=overview&product=166)).

<br />

If you choose not to upgrade, Check Point can supply a **Hotfix** . [Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.  
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.  
For faster resolution and verification, please collect [CPinfo files](http://supportcontent.checkpoint.com/solutions?id=sk92739) from the Security Management Server and Security Gateways involved in the case.

**Hotfix installation instructions:**   
Refer to [sk168597 - How to install a Hotfix](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk168597).

<br />

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
