Turn natural-language access requests into safe Check Point firewall policy updates.
Copy the install command and let the AI configure it · recommended for beginners
No copy-paste install info for "PolicyPilot MCP Server" yet — see the docs or source repo.
Create a firewall rule for application server 10.10.20.15 to allow office network 10.1.0.0/16 to access TCP 443 on weekdays from 9:00 to 18:00, and ensure existing rules do not incorrectly shadow it. Output the change summary and proposed policy update.
A structured policy change proposal with source, destination, service, schedule, insertion point, and first-match conflict checks.
Generate a Check Point policy update from this access request: subnet 172.16.5.0/24 needs access to database 10.20.30.40 on port 3306, limited to the test environment and valid for two weeks. Provide a least-privilege rule plan.
A least-privilege temporary allow-rule proposal with expiration, environment constraints, and implementation notes.
Check whether this firewall change request would be matched earlier by broader existing allow or deny rules: branch office 192.168.50.0/24 accessing internal API 10.0.8.25 on port 8443. If there is risk, suggest a safe insertion point.
A rule-order risk analysis with a safe update position that avoids shadowing by existing rules.
Manage Check Point CloudGuard WAF assets, settings, and policies using natural language.
Protect MCP-connected agents with PII redaction, rate limits, and policy enforcement.
Explore CheckPoint MCP servers, inspect tools, and retrieve server details.
Fetch exact team policy sections efficiently for subagents using section notation.
Safely run network compliance checks, backups, and configuration tasks.
Secure LLM and MCP tool interactions with zero-trust controls and policy enforcement.