diff --git a/china/aws/images/launch.png b/china/aws/images/launch.png new file mode 100755 index 00000000..b16d779c Binary files /dev/null and b/china/aws/images/launch.png differ diff --git a/china/aws/images/step1_aws.png b/china/aws/images/step1_aws.png new file mode 100755 index 00000000..a626c705 Binary files /dev/null and b/china/aws/images/step1_aws.png differ diff --git a/china/aws/images/step2_aws.png b/china/aws/images/step2_aws.png new file mode 100755 index 00000000..aeebc82a Binary files /dev/null and b/china/aws/images/step2_aws.png differ diff --git a/china/aws/templates/README.md b/china/aws/templates/README.md new file mode 100644 index 00000000..ca3d533b --- /dev/null +++ b/china/aws/templates/README.md @@ -0,0 +1,454 @@ +

中国AWS云的CloudGuard CloudFormation集群部署模板

 

+

The table below lists CloudFormation templates provided and maintained by Check Point that simplify the deployment of Check Point security solutions in AWS.

+

You can use these templates as-is or as building blocks for customizing your own templates.

+

Notes:

+ +

Table of Contents

+ + + +


Security Gateways Auto Scaling Group for Gateway Load Balancer (GWLB)

+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
DescriptionNotesVersionTerraform TemplateCloudFormation Template DownloadDirect Launch
Deploys and configures an AWS Auto Scaling group configured for Gateway Load Balancer in a Centralized Security VPC.

For more details, refer to CloudGuard Network for AWS Centralized Gateway Load Balancer R80.40 Deployment Guide
Creates a new VPC and deploys into it a Gateway Load Balancer, Check Point CloudGuard IaaS Security Gateway Auto Scaling Group, and optionally a Security Management Server.R81.20
R82
Deploys a Gateway Load Balancer, Check Point CloudGuard IaaS Security Gateway Auto Scaling Group, and optionally a Security Management Server into an existing VPC.
Deploys and configures an AWS Auto Scaling group configured for Gateway Load Balancer in a Centralized Security VPC for Transit Gateway.

For more details, refer to CloudGuard Network for AWS Gateway Load Balancer Security VPC for Transit Gateway R80.40 Deployment Guide
Creates a new VPC and deploys into it a Gateway Load Balancer, Check Point CloudGuard IaaS Security Gateway Auto Scaling Group, and optionally a Security Management Server, Gateway Load Balancer Endpoints and NAT Gateways for each AZ, for Transit Gateway.R81.20
R82
Deploys a Gateway Load Balancer, Check Point CloudGuard IaaS Security Gateway Auto Scaling Group, and optionally a Security Management Server, Gateway Load Balancer Endpoints and NAT Gateways for each AZ, for Transit Gateway into an existing VPC.
+



Security Gateway

+
+ + + + + + + + + + + + + + + + + + + + + + + + +
DescriptionNotesVersionTerraform TemplateCloudFormation Template DownloadDirect Launch
Deploys and configures a Security Gateway.

To deploy the Security Gateway so that it will be automatically provisioned, refer to sk131434.
Creates a new VPC and deploys a Security Gateway into it.R81.20
R81.10
R82
Deploys a Security Gateway into an existing VPC.
+

 

+

Single Availability Zone Cluster

+
+ + + + + + + + + + + + + + + + + + + + + + + + +
DescriptionNotesVersionTerraform TemplateCloudFormation Template  DownloadDirect Launch
Deploys and configures two Security Gateways as a Cluster.

For more details, refer to the CloudGuard Network for AWS Security Cluster R80.20 and Higher Deployment Guide.
Creates a new VPC and deploys a Cluster into it.R81.20
R81.10
R82
Deploys a Cluster into an existing VPC.
+

 

+

Security Gateways Auto Scaling Group

+
+ + + + + + + + + + + + + + + + + + +
DescriptionNotesVersionTerraform TemplateCloudFormation Template DownloadDirect Launch
Deploys and configures the Security Gateways as an AWS Auto Scaling group.

For more details, refer to the CloudGuard Network Auto Scaling for AWS R80.20 and Higher Deployment Guide.
Deploys an Auto Scaling group of Security Gateways into an existing VPC.R81.20
R81.10
R82
+

 

+

Security Gateways Auto Scaling Group for Transit Gateway

+
+ + + + + + + + + + + + + + + + + + + + + + + + +
DescriptionNotesVersionTerraform TemplateCloudFormation Template DownloadDirect Launch
Deploys and configured the Security Gateways as an AWS Auto Scaling group configured for Transit Gateway.

For more details, refer to AWS Transit Gateway R80.10 and above Deployment Guide.
Creates a new VPC and deploys an Auto Scaling group of Security Gateways configured for Transit Gateway into it, and an optional, preconfigured Security Management Server to manage them.R81.20
R81.10
R82
Deploys an Auto Scaling group of Security Gateways configured for Transit Gateway into an existing VPC, and an optional, preconfigured Security Management Server to manage them.
+

+


Cross Availability Zone Cluster

+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
DescriptionNotesVersionTerraform TemplateCloudFormation Template DownloadDirect Launch
+

Deploys two Security Gateways, each in a different Availability Zone.

For more details, refer to Cross Availability Zone Cluster for AWS R81.20 Administration Guide

+
Creates a new VPC and deploys a Cross Availability Zone Cluster of Security Gateways into it.R81.20
R82
Deploys a Cross Availability Zone Cluster of Security Gateways into an existing VPC.
+

Deploys two Security Gateways, each in a different Availability Zone.

For more details, refer to CloudGuard Transit Gateway High Availability for AWS R80.40 Administration Guide

+
Creates a new VPC and deploys a Cross Availability Zone Cluster of Security Gateways into it.R81.10
R81
R80.40
Deploys a Cross Availability Zone Cluster of Security Gateways into an existing VPC.
+

+


Cross Availability Zone Cluster for Transit Gateway

+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
DescriptionNotesVersionTerraform TemplateCloudFormation Template DownloadDirect Launch
+

Deploys two Security Gateways, each in a different Availability Zone, configured for Transit Gateway.

+

For more details, refer to Cross Availability Zone Cluster for AWS R81.20 Administration Guide

+
Creates a new VPC and deploys a Cross Availability Zone Cluster of Security Gateways configured for Transit Gateway into it.R81.20
R82
Deploys a Cross Availability Zone Cluster of Security Gateways configured for Transit Gateway into an existing VPC.
+

Deploys two Security Gateways, each in a different Availability Zone, configured for Transit Gateway.

+

For more details, refer to CloudGuard Transit Gateway High Availability for AWS R80.40 Administration Guide

+
Creates a new VPC and deploys a Cross Availability Zone Cluster of Security Gateways configured for Transit Gateway into it.R81.10
R81
R80.40
Deploys a Cross Availability Zone Cluster of Security Gateways configured for Transit Gateway into an existing VPC.
+

+


Security Management Server

+
+ + + + + + + + + + + + + + + + + + +
DescriptionNotesVersionTerraform TemplateCloudFormation Template  DownloadDirect Launch
Deploys and configures a Security Management Server.

For more details, refer to sk130372.
Deploys a Security Management Server into an existing VPC.R81.20
R81.10
R82
+

 

+

Multi-Domain Management Server

+
+ + + + + + + + + + + + + + + + + + +
DescriptionNotesVersionTerraform TemplateCloudFormation Template  DownloadDirect Launch
Deploys and configures a Multi-Domain Security Management Server. +

For more details, refer to sk143213.

+
Deploys a Multi-Domain Security Management Server into an existing VPC.R81.20
R81.10
R82
+

+


Security Management Server & Security Gateway (Standalone Deployment)

+
+ + + + + + + + + + + + + + + + + + + + + + + + +
DescriptionNotesVersionTerraform TemplateCloudFormation Template  DownloadDirect Launch
+

Deploys and configures Standalone or a manually configurable instance.

+
Creates a new VPC and deploys a Standalone or a manually configurable instance into it.R81.20
R81.10
R82
Deploys a Standalone or a manually configurable instance into an existing VPC.
+

+


CloudGuard AppSec (Not in China AWS)不支持中国AWS请勿使用

+
+ + + + + + + + + + + + + + + + + + + +
DescriptionNotesCloudFormation Template  DownloadDirect Launch
Deploys and configures a CloudGuard Infinity Next GatewayCreates a new VPC and deploys a CloudGuard Infinity Next Gateway into it.
Deploys a CloudGuard Infinity Next Gateway into an existing VPC.
+


CloudGuard AppSec Auto Scaling Group (Not in China AWS)不支持中国AWS请勿使用

+
+ + + + + + + + + + + + + + + + + + + +
DescriptionNotesCloudFormation Template  DownloadDirect Launch
Deploys and configures a CloudGuard Infinity Next Gateway as an AWS Auto Scaling GroupCreates a new VPC and deploys the Auto Scaling Group into it.
Deploys the Auto Scaling Group into an existing VPC.
+


General

+
+ + + + + + + + + + + + + + + + + + + + +
DescriptionCloudFormation Template  DownloadTerraform TemplateDirect Launch
Create an Instance profile for Security Management Server
+

Creates an Instance profile in your account preconfigured with permissions to manage resources.

+

For more details, refer to sk122074.

+
Current Check Point AMIs +

A helper template that returns the latest Check Point AMIs in a given region.

+
+

CloudFormation templates for previous versions can be found in the CloudGuard Network Security GitHub repository.

+

Notes:

+