You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: memdocs/intune/protect/checkpoint-sandblast-mobile-mobile-threat-defense-connector.md
+24-24Lines changed: 24 additions & 24 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,14 +1,14 @@
1
1
---
2
2
# required metadata
3
3
4
-
title: Set up Check Point SandBlast MTD connector with Intune
4
+
title: Set up Check Point Harmony Mobile MTD connector with Intune
5
5
titleSuffix: Microsoft Intune
6
-
description: Learn about integrating Intune with Check Point SandBlast Mobile Threat Defense to control mobile device access to your corporate resources.
6
+
description: Learn about integrating Intune with Check Point Harmony Mobile Threat Defense to control mobile device access to your corporate resources.
# Check Point SandBlast Mobile Threat Defense connector with Intune
32
+
# Check Point Harmony Mobile Threat Defense connector with Intune
33
33
34
-
You can control mobile device access to corporate resources using Conditional Access based on risk assessment conducted by Check Point SandBlast Mobile, a mobile threat defense solution that integrates with Microsoft Intune. Risk is assessed based on telemetry collected from devices running the Check Point SandBlast Mobile app.
34
+
You can control mobile device access to corporate resources using Conditional Access based on risk assessment conducted by Check Point Harmony Mobile, a mobile threat defense solution that integrates with Microsoft Intune. Risk is assessed based on telemetry collected from devices running the Harmony Mobile Protect app.
35
35
36
-
You can configure Conditional Access policies based on Check Point SandBlast Mobile risk assessment enabled through Intune device compliance policies, which you can use to allow or block noncompliant devices to access corporate resources based on detected threats.
36
+
You can configure Conditional Access policies based on Check Point Harmony Mobile risk assessment enabled through Intune device compliance policies, which you can use to allow or block noncompliant devices to access corporate resources based on detected threats.
37
37
38
38
> [!NOTE]
39
39
> This Mobile Threat Defense vendor is not supported for unenrolled devices.
@@ -50,14 +50,14 @@ You can configure Conditional Access policies based on Check Point SandBlast Mob
50
50
51
51
- Microsoft Intune subscription
52
52
53
-
- Check Point SandBlast Mobile Threat Defense subscription
54
-
- See [CheckPoint SandBlast website](https://www.checkpoint.com/) for more information.
53
+
- Check Point Harmony Mobile Threat Defense subscription
54
+
- See the [CheckPoint Harmony website](https://www.checkpoint.com/harmony).
55
55
56
-
## How do Intune and Check Point SandBlast Mobile help protect your company resources?
56
+
## How do Intune and Check Point Harmony Mobile help protect your company resources?
57
57
58
-
Check Point Sandblast Mobile app for Android and iOS/iPadOS captures file system, network stack, device and application telemetry where available, then sends the telemetry data to the Check Point SandBlast cloud service to assess the device's risk for mobile threats.
58
+
Check Point Harmony Mobile app for Android and iOS/iPadOS captures file system, network stack, device and application telemetry where available, then sends the telemetry data to the Check Point Harmony cloud service to assess the device's risk for mobile threats.
59
59
60
-
The Intune device compliance policy includes a rule for Check Point SandBlast Mobile Threat Defense, which is based on the Check Point SandBlast risk assessment. When this rule is enabled, Intune evaluates device compliance with the policy that you enabled. If the device is found noncompliant, users are blocked access to corporate resources like Exchange Online and SharePoint Online. Users also receive guidance from the Check Point SandBlast mobile app installed in their devices to resolve the issue and regain access to corporate resources.
60
+
The Intune device compliance policy includes a rule for Check Point Harmony Mobile Threat Defense, which is based on the Check Point Harmony risk assessment. When this rule is enabled, Intune evaluates device compliance with the policy that you enabled. If the device is found noncompliant, users are blocked access to corporate resources like Exchange Online and SharePoint Online. Users also receive guidance from the Harmony Mobile Protect app installed in their devices to resolve the issue and regain access to corporate resources.
61
61
62
62
Here are some common scenarios:
63
63
@@ -74,12 +74,12 @@ When malicious apps such as malware are detected on devices, you can block devic
74
74
*Block when malicious apps are detected:*
75
75
76
76
> [!div class="mx-imgBorder"]
77
-
> 
77
+
> 
78
78
79
79
*Access granted on remediation:*
80
80
81
81
> [!div class="mx-imgBorder"]
82
-
> 
82
+
> 
83
83
84
84
### Control access based on threat to network
85
85
@@ -88,12 +88,12 @@ Detect threats like **Man-in-the-middle** in network, and protect access to Wi-F
88
88
*Block network access through Wi-Fi:*
89
89
90
90
> [!div class="mx-imgBorder"]
91
-
> 
91
+
> 
92
92
93
93
*Access granted on remediation:*
94
94
95
95
> [!div class="mx-imgBorder"]
96
-
> 
96
+
> 
97
97
98
98
### Control access to SharePoint Online based on threat to network
99
99
@@ -102,30 +102,30 @@ Detect threats like **Man-in-the-middle** in network, and prevent synchronizatio
102
102
*Block SharePoint Online when network threats are detected:*
103
103
104
104
> [!div class="mx-imgBorder"]
105
-
> 
105
+
> 
106
106
107
107
*Access granted on remediation:*
108
108
109
109
> [!div class="mx-imgBorder"]
110
-
> 
110
+
> 
111
111
112
112
### Control access on unenrolled devices based on threats from malicious apps
113
113
114
-
When the Check Point Sandblast Mobile Threat Defense solution considers a device to be infected:
114
+
When the Check Point Harmony Mobile Threat Defense solution considers a device to be infected:
115
115
> [!div class="mx-imgBorder"]
116
-
> 
116
+
> 
117
117
118
118
Access is granted on remediation:
119
119
120
120
> [!div class="mx-imgBorder"]
121
-
> 
121
+
> 
122
122
123
123
## Next steps
124
124
125
-
-[Integrate CheckPoint SandBlast with Intune](checkpoint-sandblast-mobile-mtd-connector-integration.md)
125
+
-[Integrate Check Point Harmony Mobile with Intune](checkpoint-sandblast-mobile-mtd-connector-integration.md)
126
126
127
-
-[Set up CheckPoint SandBlast Mobile app](mtd-apps-ios-app-configuration-policy-add-assign.md)
127
+
-[Set up Harmony Mobile Protect app](mtd-apps-ios-app-configuration-policy-add-assign.md)
128
128
129
-
-[Create CheckPoint SandBlast Mobile device compliance policy](mtd-device-compliance-policy-create.md)
129
+
-[Create Check Point Harmony Mobile device compliance policy](mtd-device-compliance-policy-create.md)
130
130
131
-
-[Enable CheckPoint SandBlast Mobile MTD connector](mtd-connector-enable.md)
131
+
-[Enable Check Point Harmony Mobile MTD connector](mtd-connector-enable.md)
# Integrate Check Point SandBlast Mobile with Intune
33
+
# Integrate Check Point Harmony Mobile with Intune
34
34
35
-
Complete the following steps to integrate the Check Point SandBlast Mobile Threat Defense solution with Intune.
35
+
Complete the following steps to integrate the Check Point Harmony Mobile Threat Defense solution with Intune.
36
36
37
37
> [!NOTE]
38
38
> This Mobile Threat Defense vendor is not supported for unenrolled devices.
39
39
40
40
## Before you begin
41
41
42
-
The instructions in this article are done in the [Check Point SandBlast Mobile console](https://query.prod.cms.rt.microsoft.com/cms/api/am/binary/RE4Gh1u).
42
+
The instructions in this article are done in the [Check Point Harmony Mobile console](https://portal.checkpoint.com).
43
43
44
-
Before starting the process of integrating Check Point SandBlast Mobile with Intune, make sure you have the following:
44
+
Before starting the process of integrating Check Point Harmony Mobile with Intune, make sure you've the following configurations:
45
45
46
46
- Microsoft Intune subscription
47
47
@@ -55,43 +55,43 @@ Before starting the process of integrating Check Point SandBlast Mobile with Int
55
55
56
56
- Send device information to Intune
57
57
58
-
- Admin credentials to access Check Point SandBlast Mobile MTD console.
58
+
- Admin credentials to access Check Point Harmony Mobile MTD console.
59
59
60
-
### Check Point SandBlast app authorization
60
+
### Harmony Mobile Protect app authorization
61
61
62
-
The Check Point SandBlast app authorization process consists of the following:
62
+
The Harmony Mobile Protect app authorization process consists of the following steps:
63
63
64
-
- Allow the Check Point SandBlast Mobile service to communicate information related to device health state back to Intune.
64
+
- Allow the Check Point Harmony Mobile service to communicate information related to device health state back to Intune.
65
65
66
-
- CheckPoint SandBlast Mobile syncs with Azure AD Enrollment Group membership to populate its device's database.
66
+
- CheckPoint Harmony Mobile syncs with Azure AD Enrollment Group membership to populate its device's database.
67
67
68
-
- Allow Check Point SandBlast admin console to use Azure AD Single Sign On (SSO).
68
+
- Allow Check Point Harmony admin console to use Azure AD Single Sign On (SSO).
69
69
70
-
- Allow the Check Point SandBlast Mobile app to sign in using Azure AD SSO.
70
+
- Allow the Harmony Mobile Protect app to sign in using Azure AD SSO.
71
71
72
-
## To set up Check Point SandBlast Mobile integration
72
+
## To set up Check Point Harmony Mobile integration
73
73
74
-
1. Go to [Check Point SandBlast Mobile MTD console](https://query.prod.cms.rt.microsoft.com/cms/api/am/binary/RE4Gh1u) and sign in with your credentials.
74
+
1. Go to [Check Point Harmony Mobile MTD console](https://portal.checkpoint.com) and sign in with your credentials.
75
75
76
-
2.Click on the **Settings** tab.
76
+
2.Select on the **Settings** tab.
77
77
78
78
3. Choose **Device management**, then **Settings**.
79
79
80
80
4. Choose **Microsoft Intune** from the **MDM Service** drop-down list.
81
81
82
-
5. Once you set Microsoft Intune as the MDM Service, the **Microsoft Intune Configuration** window pops up, choose the **Add to my organization** for each device platform: iOS/iPadOS, Android and Windows to authorize Check Point SandBlast Mobile to communicate with Intune and Azure AD.
82
+
5. Once you set Microsoft Intune as the MDM Service, the **Microsoft Intune Configuration** window pops up, choose the **Add to my organization** for each device platform: iOS/iPadOS, Android and Windows to authorize Harmony Mobile Protect to communicate with Intune and Azure AD.
83
83
84
-

84
+

85
85
86
86
> [!IMPORTANT]
87
87
> You must add all device platforms to proceed to the next step.
88
88
89
-
6. Choose **Accept** to authorize the Check Point SandBlast Mobile app to communicate with Intune and Azure Active Directory.
89
+
6. Choose **Accept** to authorize the Harmony Mobile Protect app to communicate with Intune and Azure Active Directory.
90
90
91
91
7. Once you enabled all device platforms, you need to enter the Azure AD security group.
92
92
93
93
8. Choose **Verify**, once the Azure AD security group is successfully verified, choose **Save**.
94
94
95
95
## Next steps
96
96
97
-
-[Set up Check Point SandBlast Mobile apps](mtd-apps-ios-app-configuration-policy-add-assign.md)
97
+
-[Set up Harmony Mobile Protect apps](mtd-apps-ios-app-configuration-policy-add-assign.md)
0 commit comments