> Source: [sk181698](https://support.checkpoint.com/results/sk/sk181698)

# sk181698 - Check Point Firewall 9000 Appliances

| Property | Value |
|----------|-------|
| Solution ID | sk181698 |
| Date Created | 2023-11-29 |
| Last Modified | 2026-09-09 |
| Technical Level | General |
| Products | Hardware |
| Versions | Not Version-Specific |
| OS | Gaia |

## Solution

**Introduction \| Key Features \| Notes \| Downloads \| Installation Instructions
Known Limitations \| Documentation \| Revision History**

Visit [Check Point CheckMates Community](https://community.checkpoint.com/) to ask questions or start a discussion and get our experts assistance.

Introduction to Check Point 9000 Appliances {#Introduction}
-----------------------------------------------------------

|-----------------------------------|-----------------|
| Security Appliance                | In this article |
| 9800 Base/Plus Security Appliance | 9800            |
| 9700 Base/Plus Security Appliance | 9700            |
| 9400 Base/Plus Security Appliance | 9400            |
| 9300 Base/Plus Security Appliance | 9300            |
| 9200 Base/Plus Security Appliance | 9200            |
| 9100 Base/Plus Security Appliance | 9100            |

<br />

|--------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------|
| 9800/9700                                                                                                    | 9400/9300                                                                                                    | 9200/9100                                                                                                    |
| ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk181698/CPAP-9700-PLUS-1202401250947391.jpg "9700/9800") | ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk181698/CPAP-9400-PLUS-1202402121901151.jpg "9400/9300") | ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk181698/CPAP-9200-PLUS-1202402121902412.jpg "9200/9100") |

Check Point 9000 series of Security Gateway appliances is the most advanced high-performance gateways that provide top price/performance in an easy-to-use configuration.

Check Point 9000 series of Security Gateways provide the most advanced AI-based Threat Prevention security for demanding enterprise networks.

The Check Point 9000 series comes with a first-year subscription to the full SandBlast Prevention suite.

Check Point 9000 series of Security Gateways provide the highest prevent rate in the industry.  

The Check Point 9000 series comprises the following families of products:

|-------------------------------------------------------|-------------------|
| **Security Appliance Series**                         | **Introduced In** |
| 9800 series aimed at the large enterprise segment     | 2024              |
| 9700 series aimed at the large enterprise segment     | 2024              |
| 9400 series aimed at the mid-range enterprise segment | 2024              |
| 9300 series aimed at the mid-range enterprise segment | 2024              |
| 9200 series aimed at the small enterprise segment     | 2024              |
| 9100 series aimed at the small enterprise segment     | 2024              |

Notes {#Notes}
--------------

* By default, Check Point Firewall Appliances (9800, 9700, 9200, and 9100) and (9400, 9300 only in Security Gateway configuration) run SecureXL in the User Space (UPPAK) Mode:
  * When the appliance runs the dedicated R81.20 Factory Image.
  * When the appliance runs the R81.20 Jumbo Hotfix Take 54 and higher.
* By default, Check Point Firewall Appliances (9400 and 9300) with Standalone configuration run in User Space Firewall (USFW):
  * When the appliance runs the R81.20 Jumbo Hotfix Take 111 and higher.
  * When the appliance runs the R82 Jumbo Hotfix Take 36 and higher.
* Check Point Firewall Appliances in a Standalone deployment (9800, 9700, 9400, 9300, 9200, and 9100) run SecureXL in Kernel Mode (KPPAK).  
  Starting from R82.10 SecureXL runs only in UPAKK mode and Standalone configuration is supported.
* For instructions to change the SecureXL mode between UPPAK and KPPAK, see the [LightSpeed 10/25/40/100G QSFP28 Ports Administration Guide](https://sc1.checkpoint.com/documents/Appliances/100G_Ports_AdminGuide/Default.htm) \> Chapter "Configuring SecureXL". Note: Starting in R82.10, SecureXL supports only UPPAK mode.
* Check Point Firewall Appliances (9800, 9700, 9400, 9300, 9200, and 9100) do not support R81.20 Jumbo Hotfix Take 53 and lower.
* To manage Check Point Firewall appliances that run an R81.20 version with an R81.10 Management Server, you must install the R81.10 Jumbo Hotfix on the R81.10 Management Server. See the **Downloads \> Jumbo** **Hotfix Support** section for details.
* In the event of a hardware or software failure, no traffic will pass through the Security Gateway until the issue is resolved.

Downloads {#Downloads}
----------------------

To download these packages, you will need to have a [Software Subscription or Active Support plan](https://www.checkpoint.com/support-services/support-plans/).

* **Factory Image for Check Point Firewall 9700 and 9800 Appliances operating as Security Gateways:**

  |-----------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
  | **Image**                                           | **Link**                                                                                                                 |
  | R82.20                                              | see [sk185039](https://support.checkpoint.com/results/sk/sk185039)                                                       |
  | R82.10                                              | see [sk183506](https://support.checkpoint.com/results/sk/sk183506)                                                       |
  | R82                                                 | see [sk181127](https://support.checkpoint.com/results/sk/sk181127)                                                       |
  | R81.20 Take 773 for Check Point Firewall Appliances | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/133250) (ISO) |

  **Important Notes:**
  * Effective 03 June 2024, the dedicated R81.20 image was replaced from Take 770 to Take 773 to protect against CVE-2024-24919 (see [sk182336](https://support.checkpoint.com/results/sk/sk182336)).
  * To install this ISO image, you must use the ISOmorphic build 207 or higher (see [sk65205](https://support.checkpoint.com/results/sk/sk65205)).
* **Factory Image for Check Point Firewall 9100, 9200, 9300, and 9400 Appliances operating as Security Gateways:**

  |-----------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
  | **Image**                                           | **Link**                                                                                                                 |
  | R82.20                                              | see [sk185039](https://support.checkpoint.com/results/sk/sk185039)                                                       |
  | R82.10                                              | see [sk183506](https://support.checkpoint.com/results/sk/sk183506)                                                       |
  | R82                                                 | see [sk181127](https://support.checkpoint.com/results/sk/sk181127)                                                       |
  | R81.20 Take 791 for Check Point Firewall Appliances | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/133251) (ISO) |

  **Important Notes:**
  * Effective 03 June 2024, the dedicated R81.20 image was replaced from Take 781 to Take 791 to protect against CVE-2024-24919 (see [sk182336](https://support.checkpoint.com/results/sk/sk182336)).
  * To install this ISO image, you must use the ISOmorphic build 207 or higher (see [sk65205](https://support.checkpoint.com/results/sk/sk65205)).
* **Factory Image for Check Point Firewall 9100, 9200, 9300, 9400, 9700, and 9800 Appliances operating in a Maestro configuration:**

  |----------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
  | **Image**                                                      | **Link**                                                                                                                 |
  | R82.20                                                         | see [sk185039](https://support.checkpoint.com/results/sk/sk185039)                                                       |
  | R82.10                                                         | see [sk183506](https://support.checkpoint.com/results/sk/sk183506)                                                       |
  | R82                                                            | see [sk181127](https://support.checkpoint.com/results/sk/sk181127)                                                       |
  | R81.20 Take 786 for Check Point Firewall Appliances in Maestro | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/133252) (ISO) |

  **Important Notes:**
  * Effective 03 June 2024, the dedicated R81.20 image was replaced from Take 783 to Take 786 to protect against CVE-2024-24919 (see [sk182336](https://support.checkpoint.com/results/sk/sk182336)).
  * To install this ISO image, you must use the ISOmorphic build 207 or higher (see [sk65205](https://support.checkpoint.com/results/sk/sk65205)).
* **Jumbo Hotfix Support for Check Point Firewall Appliances (9100, 9200, 9300, 9400, 9700, and 9800):**

  |--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
  | **Package**                                                                                                                                                                                                                                                                                                        | **Link**                                                                                                                                                                                                 |
  | R81.20 Jumbo Hotfix Take **65** or higher for: 1. Check Point Firewall Appliances 9100, 9200, 9300, 9400 ^(1)^, 9700, 9800 ^(2)^ 2. Check Point Firewall Appliances 9100, 9200, 9300, 9400, 9700, 9800 in Maestro ^(3)^ 3. R81.20 Management Server to manage Check Point Firewall 9000 Appliances that run R81.20 | See [R81.20 Jumbo Hotfix Accumulator](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.20/Default.htm)                                                                                                 |
  | R81.10 Jumbo Hotfix Take **141** or higher for: * R81.10 Management Server to manage Check Point Firewall 9000 Appliances that run R81.20 (requires R81.10 SmartConsole Build **423** or higher)                                                                                                                   | See [R81.10 Jumbo Hotfix Accumulator](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.10/Default.htm) and [R81.10 SmartConsole](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.10_SC/Default.htm) |

  Notes:
  1. For 9400 Check Point Firewall appliances, see [sk182265](https://support.checkpoint.com/results/sk/sk182265).
  2. 9100, 9200, 9300, 9400, 9700, and 9800 Check Point Firewall appliances can run directly with the dedicated R81.20 ISO. To get the latest fixes and enhancements, install the R81.20 Jumbo Hotfix - the listed Take or higher.
  3. 9100, 9200, 9300, 9400, 9700, and 9800 Check Point Firewall appliances in Maestro can run directly with the dedicated R81.20 ISO. To get the latest fixes and enhancements, install the R81.20 Jumbo Hotfix - the listed Take or higher.
  4. Effective 03 June 2024, the minimum supported R81.20 Jumbo Hotfix Take was changed from Take 54 to Take 65 to protect against CVE-2024-24919 (see [sk182336](https://support.checkpoint.com/results/sk/sk182336)).
  5. To support SecureXL in the UPPAK mode (see [sk179432](https://support.checkpoint.com/results/sk/sk179432) ) on 9000 models:
     * In the Maestro configuration, you must install the R81.20 Jumbo Hotfix Accumulator, Take 89 and higher.
     * In the Security Gateway configuration, you must install the R81.20 Jumbo Hotfix Accumulator, Take 65 and higher.
* **USB Type-C Console Driver:**

  To connect to the command line interface, you can use a USB Type-C console port.  
  To use it, download and install the [USB Type-C console driver for 9800, 9700, 9400, 9300, 9200, 9100 Appliances](https://support.checkpoint.com/results/download/102404) on the console client computer.

Known Limitations {#Known_Limitations}
--------------------------------------

|-------------|----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| **ID**      | **Description**                                                                                                                                                                                                                                                            |
| -           | In Maestro configuration, you cannot use the onboard 10G Fiber ports. You must only use the ports on the supported line cards.                                                                                                                                             |
| -           | If you change the configuration of one 100G Card port (link up/down, MTU, and so on), it causes the link to go down and then up on the other 100G Card port. Therefore, schedule a maintenance window to make the required changes in the configuration of the 100G Ports. |
| -           | When a faulty DIMM is detected on a 9100 / 9200 / 9300 / 9400 appliance, the appliance fails to boot and shows the message "*ERROR: DIMM Failure found*". This message appears when connected to the appliance through the console port or in LOM Card KVM.                |
| PMTR-104982 | SecureXL UPPAK mode is not supported with SD-WAN. Note - SecureXL KPPAK mode is supported. Resolved in the? [R81.20 Jumbo Hotfix Accumulator, Take 96?](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.20/Default.htm).                                                |
| -           | All 9000 models support Standalone but only when SecureXL works in KPPAK mode. Starting from R82.10 SecureXL runs only in UPAKK mode and Standalone configuration is supported.                                                                                            |

For limitations that are related to hardware acceleration, see [LightSpeed 10/25/40/100G QSFP28 Ports Administration Guide](https://sc1.checkpoint.com/documents/Appliances/100G_Ports_AdminGuide/Default.htm).   

Documentation {#Documentation}
------------------------------

|----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| **9000 Appliances**                                                                                                                                                                                                  |
| [Check Point 9000 Appliances Getting Started Guide (English)](https://sc1.checkpoint.com/documents/Appliances/GSG_9000/EN/Default.htm)                                                                               |
| [Check Point 9000 Appliances Getting Started Guide (Spanish)](https://sc1.checkpoint.com/documents/Appliances/GSG_9000/ES/Default.htm)                                                                               |
| [Check Point 9000 Appliances Getting Started Guide (Russian)](https://sc1.checkpoint.com/documents/Appliances/GSG_9000/RU/Default.htm)                                                                               |
| [Check Point 9000 Appliances Getting Started Guide (Chinese - Traditional)](https://sc1.checkpoint.com/documents/Appliances/GSG_9000/zh-TW/Default.htm)                                                              |
| [Check Point 9000 Appliances Getting Started Guide (Chinese - Simplified)](https://sc1.checkpoint.com/documents/Appliances/GSG_9000/zh-CN/Default.htm)                                                               |
| [Check Point 9000 Appliances Getting Started Guide (Portuguese - Brazil)](https://sc1.checkpoint.com/documents/Appliances/GSG_9000/pt-br/Default.htm)                                                                |
| [Check Point 9000 Appliances Quick Start Guide](https://downloads.checkpoint.com/dc/download.htm?ID=130171)                                                                                                          |
| [Check Point Appliances Rack Mounting Guide](https://sc1.checkpoint.com/documents/Appliances/Rails/Default.htm)                                                                                                      |
| [Check Point Appliances Installing and Removing Storage Devices](https://sc1.checkpoint.com/documents/Appliances/FRU_Storage_Devices/Default.htm)                                                                    |
| [Check Point Appliances Installing and Removing AC Power Supply Units](https://sc1.checkpoint.com/documents/Appliances/FRU_AC_PSU/Default.htm)                                                                       |
| [Check Point Appliances Installing and Removing DC Power Supply Units](https://sc1.checkpoint.com/documents/Appliances/FRU_DC_PSU/Default.htm)                                                                       |
| [Check Point Appliances Installing and Removing Memory](https://sc1.checkpoint.com/documents/Appliances/FRU_Memory/Default.htm)                                                                                      |
| [Check Point Appliances Installing and Removing LOM Cards](https://sc1.checkpoint.com/documents/Appliances/FRU_LOM_Cards/Default.htm)                                                                                |
| [Check Point Appliances Installing and Removing Expansion Line Cards](https://sc1.checkpoint.com/documents/Appliances/FRU_Line_Cards/Default.htm)                                                                    |
| [Check Point Appliances Installing and Removing Transceivers and DAC Cables](https://sc1.checkpoint.com/documents/Appliances/FRU_Transceivers/Default.htm)                                                           |
| [LightSpeed 10/25/40/100G QSFP28 Ports Administration Guide](https://sc1.checkpoint.com/documents/Appliances/100G_Ports_AdminGuide/Default.htm)                                                                      |
| [Lights Out Management (LOM) HTML5-based Card Administration Guide](https://sc1.checkpoint.com/documents/Appliances/LOM_HTML5_Card_AdminGuide/Default.htm)                                                           |
| [R81.20 Gaia Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_Gaia_AdminGuide/Default.htm)                                                                              |
| [R81.20 Performance Tuning Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_PerformanceTuning_AdminGuide/Default.htm)                                                   |
| [sk179432 - Software Releases for LightSpeed Appliances QLS250 / QLS450 / QLS650 / QLS800 / MLS200 / MLS400 and Check Point Firewall Appliances 19000 and 29000](https://support.checkpoint.com/results/sk/sk179432) |

{#limitationTable}

Revision History {#Revision History}
------------------------------------

Show / Hide the revision history  

|------------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| Date             | Description                                                                                                                                                                                                                                                                                                                                                     |
| 09 Sep 2026      | Updated the Downloads section with links to the R82.20 Home Page to download the R82.20 ISO                                                                                                                                                                                                                                                                     |
| 19 Jan 2026      | Updated the Notes section                                                                                                                                                                                                                                                                                                                                       |
| 29 Dec 2025      | Updated the Downloads section with links to the R82.10 Home Page to download the R82.10 ISO                                                                                                                                                                                                                                                                     |
| 16 Feb 2025      | Limitation "SecureXL UPPAK mode is not supported with SD-WAN." was resolved in the? R81.20 Jumbo Hotfix Accumulator, Take 96?.                                                                                                                                                                                                                                  |
| 02 Dec 2024      | Updated the Documentation section with a link to the Installing and Removing DC Power Supply Units                                                                                                                                                                                                                                                              |
| 21 Oct 2024      | Updated the Downloads section with links to the R82 Home Page to download the R82 ISO                                                                                                                                                                                                                                                                           |
| 09 Oct 2024      | Added the note about the support for SecureXL in the UPPAK mode                                                                                                                                                                                                                                                                                                 |
| 12 August 2024   | Added Check Point Firewall 9000 Getting Started Guide links (Spanish, Russian, Chinese - Traditional, Chinese - Simplified, and Portuguese Brazil)                                                                                                                                                                                                              |
| 03 June 2024     | Updated the Downloads section: * The R81.20 images were replaced to protect against CVE-2024-24919 (see [sk182336](https://support.checkpoint.com/results/sk/sk182336)) * The minimum supported R81.20 Jumbo Hotfix Take was changed from Take 54 to Take 65 to protect against CVE-2024-24919 ([sk182336](https://support.checkpoint.com/results/sk/sk182336)) |
| 07 May 2024      | Updated the Downloads section                                                                                                                                                                                                                                                                                                                                   |
| 16 April 2024    | Updated the Notes and Downloads sections                                                                                                                                                                                                                                                                                                                        |
| 15 April 2024    | Updated the Notes section                                                                                                                                                                                                                                                                                                                                       |
| 08 April 2024    | Updated the Notes section Added the R81.20 Jumbo Hotfix Take 54                                                                                                                                                                                                                                                                                                 |
| 07 April 2024    | Updated the factory image for Check Point Firewall 9100, 9200, 9300, 9400, 9700, and 9800 appliances operating in a Maestro configuration                                                                                                                                                                                                                       |
| 04 April 2024    | Updated the Downloads section                                                                                                                                                                                                                                                                                                                                   |
| 28 March 2024    | Updated the Known Limitations section                                                                                                                                                                                                                                                                                                                           |
| 20 March 2024    | Updated the factory image for Check Point Firewall 9100, 9200, 9300, and 9400 appliances                                                                                                                                                                                                                                                                        |
| 19 March 2024    | Updated the Downloads section                                                                                                                                                                                                                                                                                                                                   |
| 11 March 2024    | Updated the Known Limitations section                                                                                                                                                                                                                                                                                                                           |
| 29 February 2024 | Updated the Known Limitations section                                                                                                                                                                                                                                                                                                                           |
| 21 February 2024 | First release of this article                                                                                                                                                                                                                                                                                                                                   |

<br />

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
