Starting with JATP OS 5.0.6, the ATP appliance can now run in private mode, for use cases where there is no direct Internet access. Security content and signature updates can be downloaded out of band and loaded onto the appliance so that a direct connection to Juniper's Global Security Services ( GSS ) is not required.
For an overview of Private Mode, refer the the technical documentation on JATP Private Mode CLI Commands
But how can you see if your appliance is in Private Mode or not?
Private mode is enabled and controlled in the admin CLI of Core/CM, All-In-One, and Manager of CM nodes. All secondary/collector nodes are updated automatically from the Core/AIO/MCM.
Log into the CLI as admin, enter server mode, and run the following show command.
# server (server)# show private-mode enable ATP private mode: off