Datasheet | Agentless Zero Trust Network Access (ZTNA)
Enable secure, agentless access to private applications with Check Point SASE Agentless Zero Trust Network Access (ZTNA). Enforce least-privilege access, support unmanaged devices and third parties, and strengthen cyber security with granular, context-aware controls.

© 2025 Check Point Software Technologies Ltd. All rights reserved.
Agentless Zero Trust Network Access (ZTNA)
Agentless, Application-Specific Access
Agentless Zero Trust Network Access (ZTNA), part of Check Point SASE’s Private Access, enables your employees and third-party contractors on unmanaged devices to gain secure acess to applications without an agent. Instead, they can access these apps via a web portal.
Agentless ZTNA ensures users are only given access to specific apps--they’re never connected to the wider network. Their activity is also tracked, and access can be narrowed further using context-based criteria.
© 2025 Check Point Software Technologies Ltd. All rights reserved.
AGENTLESS ZERO TRUST NETWORK ACCESS (ZTNA) 2
Agentless ZTNA Use Cases
Easily Restrict Access for Third Parties
Agentless ZTNA safeguards sensitive on-prem applications and cloud resources from threat actors. Rather than onboarding devices from outside the organization, administrators can grant contractors and other third parties access to specific applications and resources via Agentless ZTNA. This way they never have access to the network, only the applications defined according to their identity and ZTNA rules. All application access is tracked per-user for auditing purposes.
Applications or resources that can be reached through HTTPS, RDP (native or over HTTPS), VNC, or SSH protocols can be added as an application to the Check Point SASE management console. These applications can be limited to specific user groups. In addition, more granular application access policies can be applied such as specific days of the week, time of day, location, browser, and OS.
To grant contractors access only to an internal SSH server, for example, administrators simply add their usernames to a Contractors group. The administrator can then provide server access to all members of the new group. These contractors will have access only to the specific server, and not to the network as a whole, and their access will be tracked and logged. An Application Policy can then further restrict access in order to augment security by specifying other access parameters such as:
• OS • Time and day of the week • Browser • Time of day • Geolocation • IP range
© 2025 Check Point Software Technologies Ltd. All rights reserved.
AGENTLESS ZERO TRUST NETWORK ACCESS (ZTNA) 3
Limit Access to Apps
Agentless ZTNA displays all apps available to the user in one centralized, organized panel, as seen in the image above. In this way access is based on Zero Trust principles of least privileged access and micro-segmentation which allow you to control specific user and group access to specific servers, and computers, alongside more common web applications via a single console.
Monitor User Application Activity Track how and when users interact with applications on your network in order to quickly get to the root of any security gaps and better understand if your application policies are working as intended.
Give Employees Seamless Agentless Access
If employees are unable to install an agent or are using a personal device, they can simply log in to our web portal from their browser to see which corporate resources they can access. Apps can be launched in a new tab by clicking their icons.
© 2023 Check Point Software Technologies Ltd. All rights reserved.
AGENTLESS ZERO TRUST NETWORK ACCESS (ZTNA) 4
Worldwide Headquarters 5 Ha’Solelim Street, Tel Aviv 67897, Israel | Tel: 972-3-753-4555 | Fax: 972-3-624-1100 | Email: info@checkpoint.com
U.S. Headquarters 100 Oracle Parkway, Suite 800, Redwood City, CA 94065 | Tel: 1-800-429-4391
www.checkpoint.com
Agentless Zero Trust Network Access: Reduce Your Attack Surface
Check Point SASE Agentless ZTNA is an easy-to-use access management solution that keeps your network secure, no matter how complex the topography of your organization.
Book a demo today to see how Check Point SASE’s Agentless ZTNA allows businesses to balance between availability and security–a must for today’s cloud- and remote-centric workforce.
Meet Check Point SASE 10x Faster Internet Access | Full Mesh Private Access | SaaS Security | Secure SD-WAN
Check Point’s SASE is a game-changing solution that delivers 10x faster internet security, SaaS Security, and full mesh Zero Trust Access and optimized SD-WAN performance—all with an emphasis on streamlined management.
Using Check Point’s SASE, businesses can seamlessly build a secure corporate network over a private global backbone. The service is managed from a unified console and is backed by an award-winning global support team that has you covered 24/7.
To learn more, visit https://checkpoint.com or sign up for a demo.
https://www.sase.checkpoint.com/demo?utm_source=cp&utm_content=DTS&utm_medium=PDF&utm_campaign=agentless_ztna https://www.sase.checkpoint.com/demo?utm_source=cp&utm_content=DTS&utm_medium=PDF&utm_campaign=agentless_ztna