Hi.
AFAIK the integration between Extreme Control and CheckPoint is very new. It does exactly what you mentioned => update IP-UserID mapping in CheckPoint.
The opposite integration is generic and should work also = if CheckPoint (anything) send the syslog with specific/configured format to the EMC then endsystem can be blacklisted => quarantined.
Please contact your local Extreme SE = You can get it from the SAI team then.
Regards
Z.
Regards
Zdeněk Pala