Importing Device Configuration Files

You can manually import device configuration files, also referred to as offline import or batch config retrieval, for firewalls that aren't managed by a Check Point management station or another management station.


• The device must already be onboarded in the Administration module . It is assumed that the device properties for each device are correct.
• The device must be licensed for use in Security Manager.
• You must have the permission level on your device necessary to export configurations (e.g., Cisco - enable, Juniper - administrator, etc.).
• You must have admin access to the data collector. The password was selected when you or an administrator at your company configured the data collector.
• You must have write permissions granted for the device. These permissions are required to make one-time edits to device properties.

The import configuration process is completed in two steps, with an option of how to import the files.

  • Step 1—export the RAW configuration files from the device
  • Step 2, option 1—copy the saved exported files to the data collector
  • Step 2, option 2—manually import the configuration files to the Administration module