<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Updates over internet for remote agents in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Updates-over-internet-for-remote-agents/m-p/3222#M14232</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Team,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I believe if emote agents needs to communicate with Management server I guess I need to use FQDN right? Or how agents will come to know the public IP address which is natted IP for EPM server over the internet? And which is best method to be used FQDN or Public IP?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 29 Apr 2017 03:11:55 GMT</pubDate>
    <dc:creator>Blason_R</dc:creator>
    <dc:date>2017-04-29T03:11:55Z</dc:date>
    <item>
      <title>Updates over internet for remote agents</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Updates-over-internet-for-remote-agents/m-p/3222#M14232</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Team,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I believe if emote agents needs to communicate with Management server I guess I need to use FQDN right? Or how agents will come to know the public IP address which is natted IP for EPM server over the internet? And which is best method to be used FQDN or Public IP?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 29 Apr 2017 03:11:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Updates-over-internet-for-remote-agents/m-p/3222#M14232</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2017-04-29T03:11:55Z</dc:date>
    </item>
    <item>
      <title>Re: Updates over internet for remote agents</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Updates-over-internet-for-remote-agents/m-p/3223#M14233</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Endpoint Security clients communicate with the Management server by IP address.&lt;/P&gt;&lt;P&gt;You can follow sk112099 in the support center to allow access to the server using NAT:&lt;/P&gt;&lt;P&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk112099&amp;amp;partition=General&amp;amp;product=Endpoint" title="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk112099&amp;amp;partition=General&amp;amp;product=Endpoint"&gt;Allowing access to Endpoint Security Management and Policy Server using its NAT address&lt;/A&gt; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 30 Apr 2017 17:48:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Updates-over-internet-for-remote-agents/m-p/3223#M14233</guid>
      <dc:creator>Roman_Kniazev</dc:creator>
      <dc:date>2017-04-30T17:48:47Z</dc:date>
    </item>
    <item>
      <title>Re: Updates over internet for remote agents</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Updates-over-internet-for-remote-agents/m-p/3224#M14234</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hide nat? does that mean connection from Remote agents wont be coming in to fetch policy? Or is it just a push from EPM server to clients? And how about logs at remote agents, seems that means those wont be stored on EPM server if user is remote and not in network?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 May 2017 02:44:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Updates-over-internet-for-remote-agents/m-p/3224#M14234</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2017-05-01T02:44:21Z</dc:date>
    </item>
    <item>
      <title>Re: Updates over internet for remote agents</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Updates-over-internet-for-remote-agents/m-p/3225#M14235</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have to agree.&amp;nbsp; I'm not sure how this works from the agent side and how they recognize the public IP/FQDN by simply adding a NAT statement to the Policy Server object?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Jul 2017 15:13:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Updates-over-internet-for-remote-agents/m-p/3225#M14235</guid>
      <dc:creator>Cody_Ray</dc:creator>
      <dc:date>2017-07-05T15:13:56Z</dc:date>
    </item>
    <item>
      <title>Re: Updates over internet for remote agents</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Updates-over-internet-for-remote-agents/m-p/3226#M14236</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have discovered a slightly more detailed answer. &amp;nbsp;The article is describing Azure deployment but it seems to address the NAT in more detail.&lt;/P&gt;&lt;P&gt;&lt;STRONG style="background-color: #ffffff; color: #000000; font-size: 14px;"&gt;sk118133&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;Configure a Network Address Translation (NAT)&amp;nbsp;rule in SmartDashboard in &lt;STRONG&gt;&lt;EM&gt;order to add the public IP address of the deployed machine to the supported servers list&lt;/EM&gt;&lt;/STRONG&gt;. This step is needed in order to make the Endpoint Security Server available outside the Azure network environment.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;OL style="color: #000000; background-color: #ffffff; font-size: 14px;"&gt;&lt;LI&gt;Login to the Smart Endpoint Console.&lt;/LI&gt;&lt;LI&gt;Select 'File &amp;gt; Manage &amp;gt; Endpoint Servers'.&lt;/LI&gt;&lt;LI&gt;Highlight the NAT object and select "Edit", click "Next", then "Next" again.&lt;/LI&gt;&lt;LI&gt;At this point, make sure the "Install Database Checkmarks" are all selected and select "Finish".&lt;/LI&gt;&lt;LI&gt;After the Install Database completes you should install policy.&lt;STRONG&gt;&lt;EM&gt; You should see that your General Properties has updated and that the server list will be updated in the install policy&lt;/EM&gt;&lt;/STRONG&gt; window.&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;I think this more adequately describes how the clients are updated with the server listing (which should reflect the public IP)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 05 Jul 2017 16:04:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Updates-over-internet-for-remote-agents/m-p/3226#M14236</guid>
      <dc:creator>Cody_Ray</dc:creator>
      <dc:date>2017-07-05T16:04:15Z</dc:date>
    </item>
  </channel>
</rss>

