> Source: [sk173903](https://support.checkpoint.com/results/sk/sk173903)

# sk173903 - Check Point Quantum R81.20 (Titan) Release

| Property | Value |
|----------|-------|
| Solution ID | sk173903 |
| Date Created | 2021-06-06 |
| Last Modified | 2026-09-10 |
| Technical Level | General |
| Products | Security Gateway, Security Management Server, Scalable Platforms, SmartConsole, Multi-Domain Security Management Server |
| Versions | R81.20, R81.20, R81.20, R81.20, R81.20 |

## Solution

Click Here to Show the Entire Article

**Check Point Recommended version for all deployments is [R82.10](https://support.checkpoint.com/results/sk/sk183506) with its Recommended [Jumbo Hotfix Accumulator](https://sc1.checkpoint.com/documents/Jumbo_HFA/R82.10/Default.htm) Take** **For more info about all Check Point releases, refer to [Release map](https://support.checkpoint.com/results/sk/sk152052) and [Release Terminology](https://support.checkpoint.com/results/sk/sk95746) articles**

#### Note: For Azure customers, R82.10 will become the recommended version in the coming weeks

**Introduction \| What's New \| Documentation \| Downloads and Installation \| Additional Downloads and Products \| Revision History**

|---|---|---|
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk173903/R81202210260940101.20-banner.png) |||

|---|---|---|
| Introduction {#Introduction} ---------------------------- |||
| The **Quantum Cyber Security Platform** **R81.20 (Titan) Release** delivers significant innovations in Advanced Threat Prevention, Security Management, and Security Performance. In addition, Check Point has expanded on-premises and cloud network security through new and upcoming advanced cloud-based Check Point applications and services. By upgrading to R81.20, these new cloud-based applications offer powerful feature upgrades on Check Point Security Gateways, without requiring an upgrade to the next software release. With R81.20, customers immediately benefit from a wide range of new security capabilities across four major categories: **Deep learning Threat Prevention** * AI Deep Learning prevents 5x more DNS attacks in real-time. * Firewall-based, Zero-Day phishing prevention blocks 4x more Zero-Day phishing attacks (Check Point patented solution). **Quantum IoT Protect** * Discover IoT assets with Quantum Security Gateways. * Autonomous Zero Trust Profiles allow only the necessary device communication and prevent threats that target IoT assets. This helps accelerate event correlation and Threat Hunting delivered through Check Point Detection \& Response solutions. **Network Security Management** * New Infinity Cloud Services page in SmartConsole - Quick and easy integration between your on-premises Security Management Server and Infinity Portal Applications. This includes the ability to share Quantum logs with Horizon Events for a unified view of logs across Quantum, CloudGuard, and Harmony products. * Automated policy enforcement \& updates using new Network Feed Objects. DevOps and other teams can manage their own access lists without requiring interaction from Security Admin groups. * SmartWorkflow - streamlined policy change review, ensures accuracy of Security Policies through customizable built-in policy supervision workflows. **Performance Acceleration for Quantum Security Gateways** * Maestro Auto-Scaling provides dynamic performance scaling for mission critical apps and large workloads. Automatically shifts firewall resources in and out of Security Groups to support critical applications as throughput and compute requirements change. * Maestro Fastforward provides a 100G cut-through mode for trusted connections - the highest throughput and lowest latency for specific applications. * Quantum HyperFlow delivers 2.5x times higher throughput for elephant flows (very long, high-bandwidth intensive connections). Security Gateway automatically allocates more CPU cores to process elephant flow connections upon detection. |||
| What's New in R81.20 {#New} --------------------------- |||
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk170416/security_gateway_and_gaia202106131341411.png) Quantum Security Gateway and Gaia > ### Threat Prevention {#Toggle_GW} > * Zero Phishing prevents web browsing to Zero-Day phishing websites >   * Check Point Quantum Security Gateway enhances its web browsing protection to further prevent users from accessing phishing websites. >   * Powered by patented technologies and AI engines, the Security Gateway now uses Clientless In-Browser protection to prevent access to the most sophisticated phishing websites, both known and completely unknown (zero-day phishing websites). >   * The enhanced solution is available through the Security Gateway network flow, introducing dynamic security components that run within the browser with no need to install any client. >   * Delivered as part of your existing SandBlast (SNBT) license. >   * Works out of the box for Security Gateways with Autonomous Threat Prevention enabled. > * Up to 50% performance enhancement to IPS CIFS protections. > * IoC feeds now support a significantly greater number of observables for URLs, Domains, IP addresses, and Hashes - 2 million and more (only on the XFS file system), depending on the Security Gateway's hardware specifications. >   On the EXT3 file system, the IoC feed is limited to a maximum of 250,000 indicators, depending on the Security Gateway's hardware specifications. >   For more information about the file systems, see [sk141432](https://support.checkpoint.com/results/sk/sk141432). > * ICAP Server now supports secure ICAP communication over TLS. > ### IoT Protection > Instantly discover and protect your IoT assets with Quantum Security Gateways and Infinity to enforce automated Zero Trust policies: > * Discover IoT devices, routers, and switches connected to your network using your R81.20 Quantum Security Gateways. > * Assign automatically generated restrictive policies to IoT devices based on their Internet access requirement to allow only what is needed for the IoT devices to operate. > **Note** : IoT General Availability is planned to be part of the R81.20 Jumbo Hotfix Accumulator. > ### Maestro Hyperscale > * **Maestro Auto-Scaling**- Automatically assigns Security Appliances (scale units) to a Security Group when the configured conditions are met. > * **Maestro Fastforward** - Significantly improved throughput and latency for trusted connections. Maestro Fastforward offloads accept or drop policy rules to the Quantum Maestro Orchestrator for hardware acceleration and provides: >   * Sub-microseconds latency. >   * Port line-rate throughput for a single connection. > * Support for accelerated policy installation on Maestro Security Groups. See [sk169096](https://support.checkpoint.com/results/sk/sk169096). > * Monitor utilization of NAT resources in CPView and with SNMP. > * Support gradual upgrade in the Multi-Version Cluster (MVC) mode. > * Scalable Platforms now support CoreXL Dynamic Balancing - Based on the current traffic load, the Security Group automatically changes the number of CoreXL SNDs, CoreXL Firewall instances, and the Multi-Queue configuration for zero traffic impact. > * Scalable Platforms now support Management Data Plane Separation (MDPS, [sk138672](https://support.checkpoint.com/results/sk/sk138672)). > ### VSX > * Support for the DHCP Server configuration in Gaia Clish in the context of each Virtual System. > ### IPsec VPN > * Scalable VPN performance - 3 times faster to process simultaneous Remote Access and Site to Site VPN connections. > * Major performance and stability improvement for Remote Access VPN and Site to Site VPN that delivers a significantly greater capacity for VPN tunnels. > * Extended Security Gateway certificate validation capabilities for quicker authentication. > * Resilient VPN architecture - multi-process architecture to handle IKE negotiations in dedicated scalable daemons, providing unprecedented resiliency. > ### Clustering > * Added support for the "Same VMAC" feature. For more information, see the [ClusterXL Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ClusterXL_AdminGuide/Default.htm). > * ClusterXL in the Active-Active mode now supports these Software Blades: >   * Application Control >   * URL Filtering >   * Content Awareness >   * Anti-Spam and Email Security >   * Anti-Bot >   * Anti-Virus > ### Access Control > * Dynamic Policy - Use a Network Feed object to customize a private web server feed definition for IP addresses or domains. The objects are automatically updated in Security Gateway without the need to install a policy. Updatable Objects uses the Network Feed to strengthen the dynamic configuration ability of the Access Control policy. See the [Security Management Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Default.htm?cshid=ID104). > * Performance improvements - Support for Updatable Objects, Domain objects, and Dynamic objects with the Optimized Drop feature (drop templates). > ### Advanced Routing > * Support for Intermediate System (IS-IS) routing protocol. > * Support for DHCP Relay Agent Information Option 82 to address several scaling and security issues that arise in public DHCP use. > * Support for OSPFv3 NSSA. > * Support for IPv6 Static MFC Cache to enable forwarding of multicast data without PIM configuration. > * Support for Routing Event Triggers to allow ClusterXL failover, and tearing down of BGP connections through monitored BGP and BFD sessions. > * Routing Protocol History for BFD to improve troubleshooting capabilities. > * NetFlow Live connections and Firewall rule. > ### Gaia Operating System > * Configure a retention policy for Gaia scheduled backups and snapshots. > * Configure Gaia scheduled jobs to run hourly or at specified minute intervals. > * Configuring a logical next hop gateway in IPv6 static routes to send traffic through a specified interface. > * Configure the minimum number of required interface links for a bonding group in the 802.3AD mode. > * Use Gaia Clish commands to monitor NIC transceivers in appliance - module temperature, supply voltage, TX Bias voltage, Rx optical Power, and TX optical power. > * Automatic update to the NIC firmware during the ISO installation process for appliances that have 40GbE, 100/25GbE, and 2-Port Dual-Width 10/25/40/100G QSFP28 Cards. > ### CoreXL > * HyperFlow provides automatic system resource allocation by proper prioritization of tasks on highly utilized CPU cores and dynamically balances the tasks. Introducing seamless gateway tuning and optimization and improving single flow performance and spikes handling. > * In User Space Firewall (USFW), the number of IPv6 CoreXL Firewall instances is no longer limited, IPv6 Firewall instances can be increased up to the number of IPv4 Firewall instances. > ### Identity Awareness > * The Identity Awareness Gateway automatically identifies and excludes Service Account sessions acquired by the Identity Collector. For more details, see [sk174266](https://support.checkpoint.com/results/sk/sk174266). > * Improved resiliency, scalability, and stability for PDPs and Identity Broker. Additional threads handle authentication and authorization flows. > ### Mobile Access > * OAuth 2.0 support for Capsule Workspace and Office 365. > ### Quantum Spark Centrally Managed > * Central Deployment - Use SmartConsole to upgrade Quantum Spark and Quantum Edge Appliances. See the [Security Management Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Default.htm?cshid=ID016). > * Quantum Spark Appliances now support Identity Collector. > * Use SmartUpdate and SmartProvisioning (LSM) to manage Quantum Spark appliances that run R81.10. > * Quantum Spark Appliances now support transit connections to an Active Directory server on an internal network (appliances work as an AD proxy). *** ** * ** *** <br /> ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk170416/security_management202106131354392.png) Quantum Security Management > ### Cloud Services Integration {#Toggle_Management} > * Integration between your on-premises Security Management Server and Infinity Portal: >   * Run cloud services that are managed in the Infinity Portal on your Security Management Server objects. >   * See a unified log view of all your Check Point products, on-premises and in cloud. >   * Run Management API calls securely on the on-premises Security Management Server from anywhere in the world through Infinity Portal. > See the [Security Management Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Default.htm?cshid=ID130). > ### SmartConsole > * SmartConsole can use SAML 2.0 to authenticate administrators with an Identity Provider. See the [Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Default.htm?cshid=ID130). > ### SmartWorkflow > * Send policy and configuration changes for a review and approval cycle by another administrator before applying the changes. > ### SmartTasks > * New triggers - before and after working on a session that requires an approval, and for critical CloudGuard Controller events. > * New action - send an email with a detailed change report after publishing a session, after policy installation, and more. > See the [Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Default.htm?cshid=ID147). > ### Management REST API > Management API support for: > * Identity Awareness configuration on Security Gateways and Clusters. > * Configuration of HTTPS Inspection outbound certificate. > * Configuration of SmartLSM Gateways. > * Configuration of VPN settings on SmartLSM Gateways. > See the [Check Point Management API Reference](https://sc1.checkpoint.com/documents/latest/APIs/index.html). > ### Upgrades > * Central Deployment of CPUSE packages in SmartConsole: >   * Gradually upgrade Quantum Cluster Members. >   * Upgrade Quantum Spark and Quantum Edge Appliances. >   See the [Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Default.htm?cshid=ID016). > * Pre-Upgrade Verifier results are now presented in the upgrade report. > * Simpler migration from a Standalone environment to a distributed environment located in Quantum Smart-1 Cloud or on-premises. See [sk179444](https://support.checkpoint.com/results/sk/sk179444). > * Significant performance improvement of Multi-Domain Server upgrades by importing Domain Management Servers concurrently instead of sequentially. > <!-- --> *** ** * ** *** <br /> ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk170416/cloudGuard_iaas202106131355093.png) CloudGuard Network Security > * CloudGuard Controller support for: >   * Oracle Cloud Infrastructure (OCI). See the [Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_CloudGuard_Controller_AdminGuide/Default.htm?cshid=ID018). >   * Nutanix. See the [Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_CloudGuard_Controller_AdminGuide/Default.htm?cshid=ID016). >   * New Azure resources - Application Security Groups, Private Endpoints. See the [Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_CloudGuard_Controller_AdminGuide/Default.htm?cshid=ID010). >   * New AWS resources - Load Balancer tags. See the [Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_CloudGuard_Controller_AdminGuide/Default.htm?cshid=ID009). >   * SmartTasks for CloudGuard Controller critical events. See the [Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Default.htm?cshid=ID147). > * Nutanix Flow support for CloudGuard Network Security Gateways. > * Amazon Web Services (AWS): >   * Cross Availability Zones Cluster (Geo Cluster). >   * Use of the Generic Network Virtualization Encapsulation (Geneve) network encapsulation protocol for Gateway Load Balancer (GWLB). *** ** * ** *** <br /> ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk170416/endpoint_security202106131355244.png) Harmony Endpoint > ### Endpoint Policy Management {#Toggle_Endpoint} > * Use Single Sign-On to connect to the Endpoint Web Management Console. > ### Harmony Endpoint Web UI > * IoC Management - Users can now add Indicators of Compromise to their Endpoint Policy Management. > * Connection Awareness - Allows administrators to configure their own entity to determine the connectivity of the clients, and change a device's policy type from "Connected" to "Disconnected", and vice-versa accordingly. > ### Remote Access VPN > * Exclude SaaS applications (such as Office 365) from the Remote Access VPN tunnel. > * Use SAML 2.0 to authenticate Remote Access VPN users with an Identity Provider. *** ** * ** *** |||

|---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|---------------------------------------------------------------------------------------------------------------------------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| Documentation {#Documentation} ------------------------------                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                    ||||
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk170416/r81_release_notes202106131356408.png) [**Release Notes**](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_RN/Default.htm) | ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk170416/administration_guides202106131355505.png) **Administration Guides** | ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk170416/resolved_issues202106131356136.png) **[Resolved Issues](https://support.checkpoint.com/results/sk/sk174966)** | ****![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk170416/known_limitations202106131356247.png)**** **[Known Limitations](https://support.checkpoint.com/results/sk/sk174965)** |
| View |--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | Quantum Security Management / Security Gateway                                                                                                                                                                                                                                                                                                                                 | | [R81.20 Installation and Upgrade Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Installation_and_Upgrade_Guide/Default.htm)                                                                                                                                                                                                                    | | [R81.20 CLI Reference Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_CLI_ReferenceGuide/Default.htm)                                                                                                                                                                                                                                           | | [R81.20 Gaia Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Gaia_AdminGuide/Default.htm) (English) [R81.20 Gaia Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/JP/CP_R81.20_Gaia_AdminGuide/Content/Topics-GAG/Gaia-Overview.htm) (Japanese)                                                  | | [R81.20 Gaia Hardening Specifications](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Gaia_Hardening/Default.htm)                                                                                                                                                                                                                                     | | [R81.20 Carrier Security Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_CarrierSecurity_AdminGuide/Default.htm)                                                                                                                                                                                                                 | | Quantum Security Management                                                                                                                                                                                                                                                                                                                                                    | | [R81.20 Quantum Security Management Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Default.htm) (English) [R81.20 Quantum Security Management Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/JP/CP_R81.20_SecurityManagement_AdminGuide/Default.htm) (Japanese) | | [R81.20 Multi-Domain Security Management Admin Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Multi-DomainSecurityManagement_AdminGuide/Default.htm)                                                                                                                                                                                           | | [R81.20 CloudGuard Controller Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_CloudGuard_Controller_AdminGuide/Default.htm)                                                                                                                                                                                                      | | [Cloud Management Extension (CME) Administration Guide](https://sc1.checkpoint.com/documents/IaaS/WebAdminGuides/EN/CP_CME/Default.htm)                                                                                                                                                                                                                                        | | [R81.20 Logging and Monitoring Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_LoggingAndMonitoring_AdminGuide/Default.htm)                                                                                                                                                                                                      | | [R81.20 SmartProvisioning Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SmartProvisioning_AdminGuide/Default.htm)                                                                                                                                                                                                              | | Quantum Security Gateway                                                                                                                                                                                                                                                                                                                                                       | | [R81.20 Quantum Security Gateway Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityGateway_Guide/Default.htm) (English) [R81.20 Quantum Security Gateway Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/JP/CP_R81.20_SecurityGateway_Guide/Default.htm) (Japanese)                                                     | | [R81.20 ClusterXL Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ClusterXL_AdminGuide/Default.htm)                                                                                                                                                                                                                              | | [R81.20 Data Loss Prevention Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_DataLossPrevention_AdminGuide/Default.htm)                                                                                                                                                                                                          | | [R81.20 Gaia Advanced Routing Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Gaia_Advanced_Routing_AdminGuide/Default.htm)                                                                                                                                                                                                      | | [R81.20 Identity Awareness Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_IdentityAwareness_AdminGuide/Default.htm)                                                                                                                                                                                                             | | [R81.20 Mobile Access Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_MobileAccess_AdminGuide/Default.htm)                                                                                                                                                                                                                       | | [SSL Network Extender (SNX) Administration Guide](https://sc1.checkpoint.com/documents/SSL_Network_Extender_AdminGuide/Default.htm)                                                                                                                                                                                                                                            | | [R81.20 Remote Access VPN Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_RemoteAccessVPN_AdminGuide/Default.htm)                                                                                                                                                                                                                | | [R81.20 Site to Site VPN Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SitetoSiteVPN_AdminGuide/Default.htm)                                                                                                                                                                                                                   | | [R81.20 Performance Tuning Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_PerformanceTuning_AdminGuide/Default.htm)                                                                                                                                                                                                             | | [R81.20 QoS Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_QoS_AdminGuide/Default.htm)                                                                                                                                                                                                                                          | | [R81.20 Threat Prevention Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_ThreatPrevention_AdminGuide/Default.htm)                                                                                                                                                                                                               | | [R81.20 VoIP Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_VoIP_AdminGuide/Default.htm)                                                                                                                                                                                                                                        | | [R81.20 VSX Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_VSX_AdminGuide/Default.htm)                                                                                                                                                                                                                                          | | Harmony Endpoint                                                                                                                                                                                                                                                                                                                                                               | | [R81.20 Harmony Endpoint Server Administration Guide](https://sc1.checkpoint.com/documents/R81.20/SmartEndpoint_OLH/EN/Default.htm)                                                                                                                                                                                                                                            | | [R81.20 Harmony Endpoint Web Management Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_HarmonyEndpointWebManagement_AdminGuide/Default.htm)                                                                                                                                                                                     | | Scalable Platforms                                                                                                                                                                                                                                                                                                                                                             | | [Quantum Maestro Getting Started Guide](https://sc1.checkpoint.com/documents/Appliances/GSG_Maestro/EN/Default.htm)                                                                                                                                                                                                                                                            | | [Quantum Scalable Chassis Getting Started Guide](https://sc1.checkpoint.com/documents/Appliances/GSG_Chassis/EN/Default.htm)                                                                                                                                                                                                                                                   | | [R81.20 Quantum Maestro Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Maestro_AdminGuide/Default.htm)                                                                                                                                                                                                                          | | [R81.20 Quantum Scalable Chassis Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Chassis_AdminGuide/Default.htm)                                                                                                                                                                                                                 | | SmartConsole                                                                                                                                                                                                                                                                                                                                                                   | | [R81.20 SmartConsole Help](https://sc1.checkpoint.com/documents/R81.20/SmartConsole_OLH/EN/default.htm)                                                                                                                                                                                                                                                                        | | Other                                                                                                                                                                                                                                                                                                                                                                          | | [R81.20 Documentation Package](https://support.checkpoint.com/results/download/125841)                                                                                                                                                                                                                                                                                         | ||||

|---|---|---|
| Downloads and Installation {#Installation} ------------------------------------------ |||
| We recommend upgrading to the latest [R81.20 Jumbo Hotfix Accumulator](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.20/Default.htm) and the latest [R81.20 SmartConsole Build](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.20_SC/Default.htm) to benefit from the most recent improvements and fixes. |||
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122485/arrow-transp1809060017.png) Upgrading Quantum Security Management > **If your Security Management Server is connected to the Internet (the common case):** > > 1. Connect to Gaia Portal. > > 2. From the left navigation tree, click **Upgrades (CPUSE)** \> **Status and Actions**. > > 3. In the **Major Versions** section, right-click the Gaia Fast Deployment (Blink) package and click **Verify**. > > 4. Right-click the Gaia Fast Deployment (Blink) package and click **Upgrade**. > **If your Security Management Server is not connected to the Internet, see instructions:** > > 1. Download and install the latest [Upgrade Tools package](https://support.checkpoint.com/results/sk/sk135172) and [Gaia Deployment Agent (CPUSE)](https://support.checkpoint.com/results/sk/sk92449). > > 2. Download the Gaia Fast Deployment (Blink) TGZ package. [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk173903/02202204271056311.png)](https://support.checkpoint.com/results/download/143351) > > 3. Connect to Gaia Portal. > > 4. From the left navigation tree, click **Upgrades (CPUSE)** \> **Status and Actions**. > > 5. Import the Gaia Fast Deployment (Blink) package. > > 6. In the **Major Versions** section, right-click the Gaia Fast Deployment (Blink) package and click **Verify**. > > 7. Right-click the Gaia Fast Deployment (Blink) package and click **Upgrade**. > <br /> > For more information and other upgrade options, see [R81.20 Installation and Upgrade Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Installation_and_Upgrade_Guide/Default.htm). *** ** * ** *** |||
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122485/arrow-transp1809060017.png) Upgrading Multi-Domain Security Management > **If your Multi-Domain Security Management Server is connected to the Internet (the common case):** > 1. Connect to Gaia Portal. > 2. From the left navigation tree, click **Upgrades (CPUSE)** \> **Status and Actions**. > 3. In the **Major Versions** section, right-click the suggested TGZ package and click **Verify**. > 4. Right-click the TGZ package and click **Upgrade**. > **If your Multi-Domain Security Management Server is not connected to the Internet, see instructions:** > > Download the Upgrade TAR package: > > [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk170416/Upgrade-Package202105192123281.png)](https://support.checkpoint.com/results/download/124401) > <br /> > <br /> > For more information and other upgrade options, see [R81.20 Installation and Upgrade Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Installation_and_Upgrade_Guide/Default.htm) \> Chapter "Upgrade of Multi-Domain Servers and Multi-Domain Log Servers". *** ** * ** *** |||
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122485/arrow-transp1809060017.png) Upgrading Quantum Security Gateway > **Best Practice:** Use Central Deployment in SmartConsole to upgrade one or more Security Gateways: > > **SmartConsole** \> **Gateways \& Servers** \> right-click a **Security Gateway or Cluster object** \> click **Actions** > > For more information, see the [R81.20 Security Management Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Default.htm) - Chapter "Managing Gateways" \> Section "Central Deployment of Hotfixes and Version Upgrades". > **If your Security Gateway is connected to the Internet (the common case):** > > 1. Connect to Gaia Portal. > > 2. From the left navigation tree, click **Upgrades (CPUSE)** \> **Status and Actions**. > > 3. In the **Major Versions** section, right-click the Gaia Fast Deployment (Blink) package\* and click **Verify**. > > 4. Right-click the Gaia Fast Deployment (Blink) package and click **Upgrade**. > **For large scale fully automated Security Gateway upgrade using CDT, see instructions:** > > Upgrade your Security Gateway using [Central Deployment Tool (CDT)](https://support.checkpoint.com/results/sk/sk111158). > > Central Deployment Tool (CDT) is a utility that lets you manage a deployment of software packages from your Management Server to the multiple managed Security Gateways and cluster members at the same time. > <br /> > **If your Security Gateway is not connected to the Internet, see instructions:** > > 1. Download the Gaia Fast Deployment (Blink) TGZ package: > >    [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk173903/01202204271056512.png)](https://support.checkpoint.com/results/download/143300) > > 2. Connect to Gaia Portal. > > 3. From the left navigation tree, click **Upgrades (CPUSE)** \> **Status and Actions**. > > 4. Import the Gaia Fast Deployment (Blink) package. > > 5. In the **Major Versions** section, right-click the Gaia Fast Deployment (Blink) package and click **Verify**. > > 6. Right-click the Gaia Fast Deployment (Blink) package and click **Upgrade**. > <br /> > For more information and other upgrade options, see [R81.20 Installation and Upgrade Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Installation_and_Upgrade_Guide/Default.htm). *** ** * ** *** |||
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122485/arrow-transp1809060017.png) Clean Install of Security Gateway and Management Server > **Using Gaia Fast Deployment:** > For **Security Gateway** , **Security Management** , or **Multi-Domain Management Server**, download and import the Gaia Fast Deployment (Blink) package into Gaia Portal. > [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk173903/01202204271059404.png)](https://support.checkpoint.com/results/download/143797) [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk173903/02202204271059595.png)](https://support.checkpoint.com/results/download/143807) [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk173903/03202204271100096.png)](https://support.checkpoint.com/results/download/143796) > <br /> > <br /> > **If you use Bootable USB device, see instructions:** > > Effective June 3, 2024, the R81.20 Gaia images have been replaced with Take 634. > > By installing the new image, you automatically install Preventative Hotfix for CVE-2024-24919 (see [sk182336](https://support.checkpoint.com/results/sk/sk182336)). > > 1. Download the Gaia Operating System Clean Install ISO file: [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk173903/04202204271057593.png)](https://support.checkpoint.com/results/download/124397) > > 2. See [sk65205](https://support.checkpoint.com/results/sk/sk65205) to create a bootable USB device. > > 3. Run the Gaia First Time Configuration Wizard. > <br /> > For more information, see the [R81.20 Installation and Upgrade Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Installation_and_Upgrade_Guide/Default.htm). *** ** * ** *** |||
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122485/arrow-transp1809060017.png) SmartConsole > ### Upgrading SmartConsole {#Toggle_Installation_SmartConsole} > <br /> > **If your SmartConsole Client is connected to the Internet (the common case):** > The Recommended SmartConsole package automatically appears as available on your SmartConsole Client that is connected to the Internet: > **SmartConsole** \> in the top toolbar, click **Install Update** \> click **Install Now** > **For Initial Installation, see instructions:** > > 1. Download the SmartConsole installation EXE file: [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk173903/05202204271100237.png)](https://support.checkpoint.com/results/download/141741) > > 2. Transfer the SmartConsole installation file to a Windows-based computer you wish to use as a SmartConsole Client. > > 3. Run the SmartConsole installation file with Administrator privileges and follow the on-screen instructions. > <br /> > * For Web SmartConsole, see [sk170314](https://support.checkpoint.com/results/sk/sk170314) > * For Portable SmartConsole, see [sk116158](https://support.checkpoint.com/results/sk/sk116158) *** ** * ** *** |||
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122485/arrow-transp1809060017.png) Quantum Maestro and Scalable Chassis (Scalable Platforms) > Effective June 3, 2024, the R81.20 Gaia images have been replaced with Take 634. > By installing the new image, you automatically install Preventative Hotfix for CVE-2024-24919 (see [sk182336](https://support.checkpoint.com/results/sk/sk182336)). > **Upgrade with Gaia Deployment Agent (CPUSE):** > * Download and import this Upgrade package: [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk173903/06202204271101188.png)](https://support.checkpoint.com/results/download/124402) >   For more information, see [Quantum Maestro R81.20 Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Maestro_AdminGuide/Default.htm). > **Clean install** > * Download and import this Installation package: [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk173903/07202204271101329.png)](https://support.checkpoint.com/results/download/124398) >   For more information, see the [Quantum Maestro Getting Started Guide](https://sc1.checkpoint.com/documents/Appliances/GSG_Maestro/EN/Default.htm) or [Quantum Scalable Chassis Administration Guide](https://sc1.checkpoint.com/documents/Appliances/GSG_Chassis/EN/Default.htm). >   Also see [sk177624 - Check Point R81.20 for Scalable Platforms](https://support.checkpoint.com/results/sk/sk177624). *** ** * ** *** |||
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk122485/arrow-transp1809060017.png) CloudGuard Network > ### Deploying CloudGuard Network Gateway {#Toggle_Installation_CGNetwork} > * [Azure Marketplace - Firewall \& Threat Prevention](https://azuremarketplace.microsoft.com/en-us/marketplace/apps/checkpoint.vsec?tab=PlansAndPrice) > * [AWS (Amazon Web Services) CloudFormation Templates](https://support.checkpoint.com/results/sk/sk111013) > * [Google Cloud Marketplace](https://console.cloud.google.com/marketplace/browse?pli=1&q=CloudGuard%20Network%20Security) > * [Alibaba Cloud Marketplace](https://marketplace.alibabacloud.com/products?keywords=CloudGuard+Network+Security&label=All+Products&architecture=&categoryId=) > * [OCI (Oracle Cloud Infrastructure) CloudGuard Security Management - BYOL](https://cloud.oracle.com/marketplace/application/63374620/overview?region=eu-frankfurt-1) > * [OCI (Oracle Cloud Infrastructure) CloudGuard Next-Gen Firewall with Threat Prevention and SandBlast - BYOL](https://cloud.oracle.com/marketplace/application/63375494/overview?region=eu-frankfurt-1) > * [Huawei Marketplace](https://marketplace.huaweicloud.com/product/00301-1005004-0--0#productid=OFFI868806676340731904) > * [Private Cloud](https://support.checkpoint.com/results/sk/sk158292) > ### Upgrading CloudGuard Network Gateway > 1. Download the relevant Gaia Fast Deployment (Blink) package from [sk177714 - In-Place Upgrade packages for CloudGuard Network](https://support.checkpoint.com/results/sk/sk177714). > 2. Import it into the SmartConsole package repository. > 3. Right-click the Gaia Fast Deployment (Blink) package and click **Upgrade**. > <br /> *** ** * ** *** |||

|---|---|---|
| Additional Downloads and Products {#Tools} ------------------------------------------ |||
| Show / Hide <br /> Effective June 3, 2024, the R81.20 Gaia images have been replaced with Take 634. By installing the new image, you automatically install Preventative Hotfix for CVE-2024-24919 (see [sk182336](https://support.checkpoint.com/results/sk/sk182336)). R81.20 Take 634 is supported only with Jumbo Hotfix Take 65 and higher. |---------------------------------------------------------------------------------------|---|---|---|---|---|---| | Product                                                                               | Download         |||||| | **Quantum Security Gateway / Security Management / Multi-Domain Security Management** | [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk110426/arrow.png)](https://support.checkpoint.com/results/download/124397) Fresh Install Image (ISO) |||||| | **Quantum Security Gateway / Security Management / Multi-Domain Security Management** | [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk110426/arrow.png)](https://support.checkpoint.com/results/download/124401) Fresh Install and Upgrade Image (TGZ - not Blink) |||||| | **Gaia Fast Deployment (Blink)**                                                      | See [sk120193](https://support.checkpoint.com/results/sk/sk120193) |||||| | **Upgrade Tools package**                                                             | See [sk135172](https://support.checkpoint.com/results/sk/sk135172) |||||| | **DLP Agent for Exchange Server**                                                     | [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk110426/arrow.png)](https://support.checkpoint.com/results/download/124407) For Windows (MSI) |||||| |||

**[Release map](https://support.checkpoint.com/results/sk/sk152052) \| [Upgrade and Backward Compatibility maps](https://support.checkpoint.com/results/sk/sk113113) \| [Releases Terminology](https://support.checkpoint.com/results/sk/sk95746)**

|---------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------|
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk111841/CHECKMATES1705110544.PNG) | ![](https://sc1.checkpoint.com/sc//SolutionsStatics/sk160736/education_icon_48x481912080205.png) |
| **[Check Point CheckMates Community](https://community.checkpoint.com)**              | **[Education and Training](https://support.checkpoint.com/results/sk/sk163417)**                 |

|---|---|---|
| Revision History {#History} --------------------------- |||
| Show / Hide <br /> |-------------|--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------| | Date        | Description                                                                                                                                                                    | | 21 Jun 2026 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 146.                                                         | | 26 May 2026 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 141.                                                         | | 05 Apr 2026 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 127.                                                         | | 16 Feb 2026 | Updated SmartConsole package to Build 675.                                                                                                                                     | | 07 Jan 2026 | Updated SmartConsole package to Build 674.                                                                                                                                     | | 21 Dec 2025 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 120.                                                         | | 20 Nov 2025 | Updated SmartConsole package to Build 673.                                                                                                                                     | | 18 Nov 2025 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 119.                                                         | | 27 Oct 2025 | Updated SmartConsole package to Build 672.                                                                                                                                     | | 15 Oct 2025 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 118.                                                         | | 07 Sep 2025 | Updated SmartConsole package to Build 671. Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 113.              | | 04 Aug 2025 | Updated SmartConsole package to Build 665.                                                                                                                                     | | 29 Jul 2025 | R82 is declared as Check Point Recommended version                                                                                                                             | | 25 Jun 2025 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 105.                                                         | | 19 May 2025 | Updated SmartConsole package to Build 665.                                                                                                                                     | | 04 May 2025 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 99.                                                          | | 20 Mar 2025 | Updated SmartConsole package to Build 663.                                                                                                                                     | | 19 Feb 2025 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 98.                                                          | | 05 Jan 2025 | Updated SmartConsole package to Build 661.                                                                                                                                     | | 18 Dec 2024 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 92.                                                          | | 12 Nov 2024 | Updated SmartConsole package to Build 660.                                                                                                                                     | | 28 Oct 2024 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 89.                                                          | | 13 Oct 2024 | Added link to Cloud Management Extension (CME) Administration Guide.                                                                                                           | | 06 Oct 2024 | Updated SmartConsole package to Build 659.                                                                                                                                     | | 18 Sep 2024 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 84.                                                          | | 10 Sep 2024 | Updated SmartConsole package to Build 658.                                                                                                                                     | | 19 Aug 2024 | Updated SmartConsole package to Build 656.                                                                                                                                     | | 31 Jul 2024 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 76.                                                          | | 01 Jul 2024 | Updated SmartConsole package to Build 655.                                                                                                                                     | | 05 Jun 2024 | Updated SmartConsole package to Build 654.                                                                                                                                     | | 03 Jun 2024 | * R81.20 Gaia images have been replaced with Take 634. * Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 65. | | 08 Apr 2024 | Updated SmartConsole package to Build 653.                                                                                                                                     | | 03 Apr 2024 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 53.                                                          | | 08 Jan 2024 | Updated SmartConsole package to Build 651.                                                                                                                                     | | 04 Dec 2023 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 41.                                                          | | 26 Nov 2023 | Added SSL Network Extender (SNX) Administration Guide.                                                                                                                         | | 23 Oct 2023 | Updated SmartConsole package to Build 649.                                                                                                                                     | | 13 Sep 2023 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 26.                                                          | | 15 Aug 2023 | Updated the section "What's New" \> sub-section "Clustering": added the list of Software Blades that are supported in the ClusterXL in the Active-Active mode.                 | | 14 Aug 2023 | Updated SmartConsole package to Build 646.                                                                                                                                     | | 30 Jul 2023 | Updated SmartConsole package to Build 645.                                                                                                                                     | | 24 Jul 2023 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 24.                                                          | | 01 Jun 2023 | Updated SmartConsole package to Build 641.                                                                                                                                     | | 30 Apr 2023 | Fast Deployment Package: Security Gateway, Security Management and Multi-Domain were updated to Jumbo Hotfix Take 10.                                                          | | 27 Apr 2023 | Downloads and Installation section redesign.                                                                                                                                   | | 08 Mar 2023 | Updated SmartConsole package to Build 640.                                                                                                                                     | | 07 Mar 2023 | Updated SmartConsole package to Build 4.                                                                                                                                       | | 12 Jan 2023 | Updated the installation image to Take 631. The new Take contains a replacement for the self-updatable files.                                                                  | | 24 Nov 2022 | Added R81.20 Documentation Package.                                                                                                                                            | | 21 Nov 2022 | First release of this document.                                                                                                                                                | |||

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
