<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CloudGuard - Remote Access SSL-VPN Connectivity Issue in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/CloudGuard-Remote-Access-SSL-VPN-Connectivity-Issue/m-p/182597#M264</link>
    <description>&lt;P&gt;What version/JHF level?&lt;BR /&gt;When you say "this SK article" what precise one?&lt;BR /&gt;Also, what precise client are you using here to connect?&lt;/P&gt;
&lt;P&gt;Changing the WebUI port shouldn't be necessary here, as we handle this via Multiportal.&lt;/P&gt;</description>
    <pubDate>Tue, 30 May 2023 18:05:27 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2023-05-30T18:05:27Z</dc:date>
    <item>
      <title>CloudGuard - Remote Access SSL-VPN Connectivity Issue</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/CloudGuard-Remote-Access-SSL-VPN-Connectivity-Issue/m-p/182423#M263</link>
      <description>&lt;P&gt;Hi Everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm practicing deploying CloudGuard Network Security Solution on Azure Public Cloud and I'm facing connectivity issues with setting up Remote-Access VPN.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;On the web-browser, I can see that the gateway is resetting the connection: &lt;STRONG&gt;"It looks like&amp;nbsp;&lt;FONT color="#000000"&gt;&amp;lt;GW-Pub-IP-Addr&amp;gt;&lt;/FONT&gt;&amp;nbsp;closed the connection&lt;/STRONG&gt;&amp;nbsp;-&amp;gt; &lt;STRONG&gt;ERR_CONNECTION_&lt;/STRONG&gt;&lt;STRONG&gt;CLOSED"&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Architecture:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;CloudGuard Single Gateway deployed with 2 interfaces: eth0 and eth1. The static public IP is assigned to eth0:1 sub-interface.&lt;/LI&gt;&lt;LI&gt;The SMS is on an on-premise VMware Workstation.&lt;/LI&gt;&lt;LI&gt;IPsec VPN and Mobile Access VPN blades are enabled on the gateway.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I followed this SK article: &lt;I&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk109360#" target="_blank"&gt;Check Point Reference Architecture for Azure&lt;/A&gt;&lt;/I&gt;. The best practices section speaks about the &lt;STRONG&gt;IPsec VPN, Link Selection Source IP Address&amp;nbsp;settings&lt;/STRONG&gt;, where it says to select the private IP address of the gateway's external interface to&amp;nbsp;&lt;SPAN&gt;ensure that the Gateway in the Azure cloud sends encrypted traffic with the source address set to its private IP address.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Is there anything similar to do for Remote Access VPN configuration as well?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Anti-Spoofing is disabled on both external and internal interfaces.&lt;/LI&gt;&lt;LI&gt;I suspected there might be a conflict with Web-UI and changed the &lt;STRONG&gt;web ssl-port&lt;/STRONG&gt; from 443 to 4434. Even then the issue persists.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could anyone help me to know what should I be troubleshooting for, please?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you!&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 31 May 2023 04:16:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/CloudGuard-Remote-Access-SSL-VPN-Connectivity-Issue/m-p/182423#M263</guid>
      <dc:creator>chethan_m</dc:creator>
      <dc:date>2023-05-31T04:16:55Z</dc:date>
    </item>
    <item>
      <title>Re: CloudGuard - Remote Access SSL-VPN Connectivity Issue</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/CloudGuard-Remote-Access-SSL-VPN-Connectivity-Issue/m-p/182597#M264</link>
      <description>&lt;P&gt;What version/JHF level?&lt;BR /&gt;When you say "this SK article" what precise one?&lt;BR /&gt;Also, what precise client are you using here to connect?&lt;/P&gt;
&lt;P&gt;Changing the WebUI port shouldn't be necessary here, as we handle this via Multiportal.&lt;/P&gt;</description>
      <pubDate>Tue, 30 May 2023 18:05:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/CloudGuard-Remote-Access-SSL-VPN-Connectivity-Issue/m-p/182597#M264</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-05-30T18:05:27Z</dc:date>
    </item>
    <item>
      <title>Re: CloudGuard - Remote Access SSL-VPN Connectivity Issue</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/CloudGuard-Remote-Access-SSL-VPN-Connectivity-Issue/m-p/182635#M265</link>
      <description>&lt;P&gt;&lt;EM&gt;What version/JHF level? &lt;/EM&gt;&amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;&lt;STRONG&gt;R81.10 JHF Take 95&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;When you say "this SK article" what precise one?&lt;/EM&gt; &amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;&lt;STRONG&gt;SK Article:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk109360#" target="_blank" rel="noopener"&gt;Check Point Reference Architecture for Azure&lt;/A&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;EM&gt;Also, what precise client are you using here to connect? &amp;gt;&lt;/EM&gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Checkpoint Endpoint Security VPN and from Web Browser&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;Changing the WebUI port shouldn't be necessary here, as we handle this via Multiportal. &amp;gt;&amp;gt;&amp;gt;&amp;gt;&amp;nbsp;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;You're right. Not only &lt;STRONG&gt;https://&amp;lt;ip&amp;gt;/sslvpn&lt;/STRONG&gt; URL, it&amp;nbsp;looks like even the GAIA WebUI is also refusing to connect over port 443. But it works when I change the port to 4434.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 31 May 2023 04:31:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/CloudGuard-Remote-Access-SSL-VPN-Connectivity-Issue/m-p/182635#M265</guid>
      <dc:creator>chethan_m</dc:creator>
      <dc:date>2023-05-31T04:31:49Z</dc:date>
    </item>
    <item>
      <title>Re: CloudGuard - Remote Access SSL-VPN Connectivity Issue</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/CloudGuard-Remote-Access-SSL-VPN-Connectivity-Issue/m-p/182657#M266</link>
      <description>&lt;P&gt;The solution to my problem was found here (sk115732):&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk115732" target="_blank"&gt;Unable to connect to Gaia Portal on port 443 (checkpoint.com)&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 31 May 2023 09:23:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/CloudGuard-Remote-Access-SSL-VPN-Connectivity-Issue/m-p/182657#M266</guid>
      <dc:creator>chethan_m</dc:creator>
      <dc:date>2023-05-31T09:23:48Z</dc:date>
    </item>
    <item>
      <title>Re: CloudGuard - Remote Access SSL-VPN Connectivity Issue</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/CloudGuard-Remote-Access-SSL-VPN-Connectivity-Issue/m-p/182659#M267</link>
      <description>&lt;P&gt;Thanks for sharing&lt;/P&gt;</description>
      <pubDate>Wed, 31 May 2023 09:32:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/CloudGuard-Remote-Access-SSL-VPN-Connectivity-Issue/m-p/182659#M267</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2023-05-31T09:32:23Z</dc:date>
    </item>
  </channel>
</rss>

