> Source: [sk183617](https://support.checkpoint.com/results/sk/sk183617)

# sk183617 - Enterprise Endpoint Security E89.05 Windows Clients

| Property | Value |
|----------|-------|
| Solution ID | sk183617 |
| Date Created | 2025-07-02 |
| Last Modified | 2026-08-09 |
| Technical Level | General |
| Products | Endpoint Security |
| Versions | E89.X |
| OS | Windows |

## Solution

|------------------------------------------------------------------------------------------------------------------------|---------------------------------------------------------------------------------------------------------------|-------------------------------------------------------------------------------------------------------|
| * **In a Nutshell** * **New Features and Enhancements** * **Resolved Issues** * **Endpoint Security Client Downloads** | * **Standalone Client Downloads** * **Endpoint Security Server Downloads** * **Management Console Downloads** | * **Utilities/Services Downloads** * **Known Limitations** * **Documentation \& Related SK Articles** |

<br />

**Notes:**

* See **[Endpoint Security Homepage.](https://support.checkpoint.com/results/sk/sk117536)**
* This version introduces support for Windows 11 version 25H2 as a GA (General Availability) version.  
  VPN Standalone Client with GA support for Windows 11 25H2 is E89.00.
* Capsule Docs reached its End of Support.  
  To upgrade to E89.05 Windows with managed Capsule Docs, you must uninstall Capsule Docs from the machine first.
* This release includes all limitations of earlier releases unless explicitly shown as resolved.
* Smart Pre-boot is now available as GA, making this feature accessible to all customers.  
  Smart Pre-boot introduces new unique features like Self-Unlock and Mobile Login by utilizing simple MFA using Smart Phone connectivity.

<br />

Click Here to Show the Entire Article  
<br />

In a Nutshell {#1}
------------------

|----------------------------------------------|-------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
| Item                                         | Description                                                       | Download Link                                                                                                            |
| **Managed Client - US-DHS and EU compliant** | E89.05 Endpoint Security Clients for Windows OS - Dynamic package | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/138514) (EXE) |
| **Managed Client - US-DHS and EU compliant** | E89.05 Endpoint Security Clients for Windows OS - Initial Client  | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/138515) (ZIP) |
| For more info about replacing Anti-Malware Blade with US-DHS and EU compliant Blade, refer to [sk178307](https://support.checkpoint.com/results/sk/sk178307).                                                                             |||
| **VPN Standalone Client**                    | E89.05 Remote Access VPN Clients for Windows                      | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/141837) (MSI) |

List of New Features and Enhancements in E89.05 for Windows {#2}
----------------------------------------------------------------

<br />

{#Infrastructure}

|------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| ID         | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 |
| General                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                 ||
| -          | **NEW** : This version introduces support for Windows 11 version 25H2 as a GA (General Availability) version. VPN Standalone Client with GA support for Windows 11 25H2 is E89.00.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                          |
| -          | **NEW** : The E89.05 Endpoint Security Clients version introduces the Quarantine Management feature. This feature offers a new way to analyze, restore, or delete quarantined files across the organization. **Note**: Quarantine Management is available for Early Availability (EA) customers and requires upgrading the Server to a supported version.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   |
| EPS-57673  | **Enhancement** : A new capability is now added to support remote collection of memory dumps, offering improved flexibility and control. The supported dump types include: * Process Dump - Capture memory dumps for one or more processes using process name or PID. Note: Multiple dumps are generated if several processes share the same name. Protected Process Light (PPL) processes are not supported. * Kernel Dump - Collect a kernel memory dump without requiring a system reboot. Note: Not supported on Windows 7. * Full Memory Dump - Initiate a BSOD to collect a full or active memory dump (requires prior configuration on the target device, see more information [here](https://learn.microsoft.com/en-us/troubleshoot/windows-server/performance/memory-dump-file-options)). Note: User confirmation before reboot is optional. * Automated Packaging and Upload - All dumps are automatically zipped, segmented if necessary, and uploaded to the designated destination (Check Point FTP, Amazon S3, or custom FTP Servers). Note: On 32-bit Windows systems, the ZIP file name is not displayed when uploading full memory dumps to an FTP Server. |
| AHTP-32981 | **Enhancement:** Quarantined files are now automatically deleted after 30 days. Customers requiring a different retention period can [contact Check Point support](https://www.checkpoint.com/support-services/contact-support/) to request modifications.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |

{#resolvedTable}  

<br />

List of Resolved Issues in E89.05 for Windows {#3}
--------------------------------------------------

<br />

{#Infrastructure}

|------------|----------------------------------------------------------------------------------------------------------------------------------------------------|
| ID         | Description                                                                                                                                        |
| General                                                                                                                                                        ||
| AHTP-33353 | In rare cases, a BSOD may occur during the upgrade to a higher version. After the restart, the upgrade completes and the system works as expected. |

{#resolvedTable}

Endpoint Security Client Downloads {#4}
---------------------------------------

Show / Hide this section  
> * Starting from E80.85, Endpoint Security improves coverage of malicious threats by sending anonymized Incident related data to the Check Point Threat Cloud. This feature is turned on by default. For more information, including how to disable this feature, refer to [sk129753](https://support.checkpoint.com/results/sk/sk129753).
>
> ### *Endpoint Security E89.05 Clients - US-DHS and EU compliant* {#Endpoint_Security_E85.10_ClientsE2}
>
> |----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|-------------------------------------------------------------------------------------------------------------------------|
> | Package Description                                                                                                                                                                                                                                                                                                        | Links                                                                                                                                                                                                                                             ||
> | Endpoint Security Clients for Windows OS - Dynamic package: > Complete Endpoint Security Client for any CPU (32bit or 64bit). This is a self-extracting executable EXE file with all components (Blades).                                                                                                                  | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/138514) (EXE)                                                                                                                          ||
> | Initial Client: > Initial Client is a very thin Client without any blade used for software deployment purposes.                                                                                                                                                                                                            | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/138515) (ZIP)                                                                                                                          ||
> | Package Description                                                                                                                                                                                                                                                                                                        | 32bit                                                                                                                    | 64bit                                                                                                                   |
> | **Endpoint Complete package:** * Anti-Bot and URL Filtering * Anti-Malware E2 (US-DHS and EU compliant) * Anti-Ransomware, Behavioral Guard and Forensics * Compliance and Posture * Firewall and Application Control * Full Disk Encryption * Media Encryption and Port Protection * Threat Emulation * Remote Access VPN | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/138516) (ZIP) | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/138517)(ZIP) |
>
> {#resolvedTable}   
For more info about replacing Anti-Malware Blade with US-DHS and EU compliant Blade, refer to [sk178307](https://support.checkpoint.com/results/sk/sk178307). {#Endpoint_Security_E85.10_Clients}  

Standalone Client Downloads {#5}
--------------------------------

Show / Hide this section  
> **Note:** These Standalone Clients do not require Endpoint Security Server installation as part of their deployment.  
>
> ### *Standalone E89.05 Clients*
>
> **Note** : Remote Access VPN Standalone Client E89.00 is replaced with E89.05, which includes a stability improvement. Customers running Remote Access VPN Standalone Client E89.00 are advised to upgrade to E89.05. See the ESVPN-4784 issue in Known Limitations below.  
>
> |----------------------------------------------------------------|-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
> | Package                                                        | Description                                                                                                                                                                         | Link                                                                                                                     |
> | **Remote Access VPN Clients for Windows**                      | Remote Access VPN Client for SmartDashboard-managed Clients                                                                                                                         | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/141837) (MSI) |
> | **Remote Access VPN Clients (Automatic Upgrade file)**         | Remote Access VPN Client for automatic upgrade through the gateway. For SmartDashboard-managed Clients only.                                                                        | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/141838) (CAB) |
> | **Remote Access VPN Clients for ATM**                          | Unattended Remote Access VPN Clients, managed with CLI and API and do not have a User interface.                                                                                    | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/141839) (MSI) |
> | **Remote Access VPN Clients for ATM (Automatic Upgrade file)** | Unattended Remote Access VPN Clients, managed with CLI and API and do not have a User interface for automatic upgrade through the gateway. For SmartDashboard-managed Clients only. | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/141840) (CAB) |

{#resolvedTable}  

Endpoint Security Server Downloads {#6}
---------------------------------------

Show / Hide this section  
>
> |--------------------------|---------------------------------|----------------------------------------------------------------|
> | Endpoint Security Server | Package                         | Link                                                           |
> | **R82.10**               | Endpoint Security Server R82.10 | [sk183506](https://support.checkpoint.com/results/sk/sk183506) |
> | **R82**                  | Endpoint Security Server R82    | [sk181127](https://support.checkpoint.com/results/sk/sk181127) |
> | **R81.20**               | Endpoint Security Server R81.20 | [sk173903](https://support.checkpoint.com/results/sk/sk173903) |
> | **R81.10**               | Endpoint Security Server R81.10 | [sk170416](https://support.checkpoint.com/results/sk/sk170416) |

> {#resolvedTable}

Management Console Downloads {#7}
---------------------------------

Show / Hide this section  
>
> ### *Management Console for Endpoint Security Server* {#SmartConsole for Endpoint Security Server}
>
> The SmartConsole for Endpoint Security Server allows the Administrator to connect to the Endpoint Security Server and to manage the new Endpoint Security Software Blades.
>
> |--------------------------|--------------------------------------------------|----------------------------------------------------------------------------------------------------------------|
> | Endpoint Security Server | Package                                          | Link                                                                                                           |
> | **R82.10**               | SmartConsole for Endpoint Security Server R82.10 | [link](https://support.checkpoint.com/results/download/135254)                                                 |
> | **R82**                  | SmartConsole for Endpoint Security Server R82    | [link](https://support.checkpoint.com/results/download/125531)                                                 |
> | **R81.20**               | SmartConsole for Endpoint Security Server R81.20 | [link](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.20_SC/R81.20/R81.20-List-of-all-Resolved-Issues.htm) |
> | **R81.10**               | SmartConsole for Endpoint Security Server R81.10 | [link](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.10_SC/Default.htm)                                   |

{#resolvedTable}  

Utilities Downloads {#8}
------------------------

Show / Hide this section  
>
> |----------------------------------------------------------------------------------------------|---------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|--------------------------------------------------------------------------------------------------------------------------|
> | Package                                                                                      | Description                                                                                                                                                                                                                                                                                                                                                         | Link                                                                                                                     |
> | **Endpoint Security Remediation Manager for Administrators (AdminRemediationManagerUI.exe)** | The administrator utility contains the capabilities of the end-user utility plus these additional features: * Quarantine - Send files to quarantine. * Delete - Use the Endpoint Security remediation service to delete a file. * Import - Import a quarantined file from a different computer or location. Get the administrator utility from the release homepage | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/138857) (EXE) |
> | **Full Disk Encryption Offline Management Tool (OfflineMgmtTool.msi)**                       | The Endpoint Offline Management Tool lets administrators manage offline mode users and give them password recovery and disk recovery.                                                                                                                                                                                                                               | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/120236) (TGZ) |
> | **Full Disk Encryption Offline Management Tool - Japanese (OfflineMgmtToolJapanese.msi)**    | The Endpoint Offline Management Tool lets administrators manage offline mode users and give them password recovery and disk recovery.                                                                                                                                                                                                                               | [![](https://sc1.checkpoint.com/sc/images/download-m.png)](https://support.checkpoint.com/results/download/120237) (TGZ) |

{#resolvedTable} {#Full Disk Encryption Offline Management Tool}  

Known Limitations {#9}
----------------------

Show / Hide this section  
>
> |------------|----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
> | Issue ID   | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
> | ESVPN-4784 | Remote Access VPN Standalone Client E89.00 is replaced with E89.05, which includes a stability improvement. Customers running Remote Access VPN Standalone Client E89.00 are advised to upgrade to E89.05.                                                                                                                                                                                                                                                                                                                                                                                                                 |
> | EPS-51129  | FDE Smart Pre-boot (EA feature) secondary external display connected via docking station may not work. Support for secondary display via docking stations is experimental and depends on hardware, firmware settings, and display connection type.                                                                                                                                                                                                                                                                                                                                                                         |
> | EPS-50963  | Endpoint Client Posture Management is not supported on Windows 7 OS. Automatic Download is not displayed, and the Patch status is shown as "*Update not available*".                                                                                                                                                                                                                                                                                                                                                                                                                                                       |
> | EPS-51871  | When Windows Smart App Control is enabled, it blocks the execution of the Media Encryption offline utility (which is located on the removeable media). As a workaround, you can copy the utility *Access To Business Data.exe* to a local disk and execute it from there.                                                                                                                                                                                                                                                                                                                                                  |
> | EPS-52957  | SmartCard authentication is not supported in FDE Smart Pre-boot (EA feature).                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                              |
> | ESVPN-3943 | The login prompt of Implicit Secure Domain Logon (SDL) appears before the Windows logon on the computer, which is not part of any domain.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  |
> | ESVPN-4305 | * If the user changes the language of the Endpoint Security Client UI, the language of the VPN UI will not be changed until the next reboot. * If the user changes the language of Endpoint Security Client UI to a non-Latin language (Russian, Greek, Chinese, etc.), he might see question marks in VPN UI unless he sets the correct language for non-Unicode applications in Windows language settings.                                                                                                                                                                                                               |
> | AHTP-30337 | For Endpoint Security Clients with Anti-Malware E2 (US-DHS and EU compliant), after an upgrade from E88.31 or lower to E88.40 or higher version: * On Windows machines that support Azure Code Signing Signatures, Check Point Endpoint Security is registered twice in the Windows Security Center. Reboot resolves the issue. * On Windows machines that do not support Azure Code Signing Signatures, after updating Windows with configuration and dependencies to support Azure Code Signing signatures, Check Point Endpoint Security is registered twice in the Windows Security Center. Reboot resolves the issue. |
> | EPS-58003  | In some scenarios, the transition from Classic Pre-boot to Smart Pre-boot may require a restart.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                           |
> | EPS-59275  | After uninstalling the Endpoint Security Client, the computer may remain listed as registered in the Management pane. This occurs only in networks where the Client communicates with the Server through an authenticated proxy. Such proxies are not supported for sending unregistered messages. This limitation does not apply if the Client communicates directly with the Server or through an unauthenticated proxy. In those cases, the computer is removed from asset management as expected.                                                                                                                      |
> | AHTP-33630 | When downloading ZIP files from S3/FTP servers, the downloaded ZIP files become corrupted and cannot be opened or extracted using Windows File Explorer, requiring external tools like 7-Zip to access the contents.                                                                                                                                                                                                                                                                                                                                                                                                       |
> | -          | The "Export Forensics data to External DB" feature is not supported in this version. Refer to [sk179659](https://support.checkpoint.com/results/sk/sk179659).                                                                                                                                                                                                                                                                                                                                                                                                                                                              |

Documentation \& Related SecureKnowledge Articles {#10}
-------------------------------------------------------

Show / Hide this section  
>
> |-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
> | Endpoint Security Clients                                                                                                                                                                       |
> | [Endpoint Security Clients for Windows E89.x Release Notes](https://sc1.checkpoint.com/documents/E89.x/EN/Endpoint_Security_Clients_for_Windows_RN/Default.htm)                                 |
> | [Endpoint Security Clients for Windows User Guide](https://sc1.checkpoint.com/documents/HarmonyEndpoint/Endpoint_Security_Clients_for_Windows_UserGuide/Default.htm)                            |
> | [Replacing Anti-Malware Blade with US-DHS and EU compliant Blade](https://support.checkpoint.com/results/sk/sk178307)                                                                           |
> | [Endpoint Security Security for Windows MDM Deployment Guide](https://sc1.checkpoint.com/documents/HarmonyEndpoint/Harmony_Endpoint_Security_for_Windows_MDM_Deployment_Guide/Default.htm)      |
> | [sk120667 - How to upgrade to Windows 10 1607 and higher with FDE in-place](https://support.checkpoint.com/results/sk/sk120667)                                                                 |
> | [sk133174 - Enterprise Endpoint Security Windows Clients for ATM](https://support.checkpoint.com/results/sk/sk133174)                                                                           |
> | [sk183716 - Enterprise Endpoint Security Hotfixes for E89.x Windows Clients Releases](https://support.checkpoint.com/results/sk/sk183716)                                                       |
> | [Endpoint Security Safe Deployment Procedure (SDP)](https://sc1.checkpoint.com/documents/HarmonyEndpoint/Harmony_Endpoint_Safe_Deployment/Harmony_Endpoint_Safe_Deployment_Procedure_(SDP).pdf) |
> | Remote Access VPN Clients                                                                                                                                                                       |
> | [E89.x Remote Access VPN Clients for Windows Release Notes](https://sc1.checkpoint.com/documents/E89.x/EN/Remote_Access_VPN_Clients_for_Windows_RN/Default.htm)                                 |
> | [Remote Access VPN Clients for Windows Administration Guide](https://sc1.checkpoint.com/documents/RemoteAccessClients_forWindows_AdminGuide/Default.htm)                                        |
> | EPMaaS                                                                                                                                                                                          |
> | [Endpoint Security Administration Guide](https://sc1.checkpoint.com/documents/Infinity_Portal/WebAdminGuides/EN/Harmony-Endpoint-Admin-Guide/Default.htm)                                       |
> | Endpoint Security Server                                                                                                                                                                        |
> | [Endpoint Security Server R82 Administration Guide](https://sc1.checkpoint.com/documents/R82/SmartEndpoint_OLH/EN/Content/Topics-EPSG-R82.00/Intro-to-Endpoint_Security.htm)                    |
> | [Endpoint Security Web Management R82 Administration Guide](https://sc1.checkpoint.com/documents/R82/WebAdminGuides/EN/CP_R82_HarmonyEndpointWebManagement_AdminGuide/Default.htm)              |
> | [R82 Release Notes](https://sc1.checkpoint.com/documents/R82/WebAdminGuides/EN/CP_R82_RN/Default.htm)                                                                                           |
> | [Endpoint Security Server R81.20 Administration Guide](https://sc1.checkpoint.com/documents/R81.20/SmartEndpoint_OLH/EN/Default.htm)                                                            |
> | [Endpoint Security Web Management R81.20 Administration Guide](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_HarmonyEndpointWebManagement_AdminGuide/Default.htm)     |
> | [R81.20 Release Notes](https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_RN/Content/Topics-RN/Whats-New.htm)                                                              |
> | [Endpoint Security Server R81.10 Administration Guide](https://sc1.checkpoint.com/documents/R81.10/SmartEndpoint_OLH/EN/Default.htm)                                                            |
> | [Endpoint Security Web Management R81.10 Administration Guide](https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_HarmonyEndpointWebManagement_AdminGuide/Default.htm)     |
> | [R81.10 Release Notes](https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_RN/Topics-RN/Whats-New.htm)                                                                      |
>
> <br />
>
> For more information on Check Point releases, see: [Release map](https://support.checkpoint.com/results/sk/sk152052), [Upgrade and Backward Compatibility maps](https://support.checkpoint.com/results/sk/sk113113), [Releases plan](https://support.checkpoint.com/results/sk/sk95746).
> You can also visit our [Endpoint forum](https://community.checkpoint.com/community/infinity-general/endpoint), [Remote Access forum](https://community.checkpoint.com/community/infinity-general/remote-access), or any other [CHECKMATES forum](https://community.checkpoint.com/) to ask questions and get answers from technical peers and Support experts.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
