<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Location Awareness Clarifications in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Location-Awareness-Clarifications/m-p/109503#M14927</link>
    <description>&lt;P&gt;A TAC case may be needed here to clarify what's going on.&lt;/P&gt;</description>
    <pubDate>Mon, 01 Feb 2021 22:50:08 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2021-02-01T22:50:08Z</dc:date>
    <item>
      <title>Location Awareness Clarifications</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Location-Awareness-Clarifications/m-p/109213#M14810</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;I need a clarify on how Location Awareness works with Endpoint Client.&lt;/P&gt;&lt;P&gt;Currently i've an HA Pair of CP that will only server for SSL\IPSec Endpoint (using alwasy-on and machine authentication), so the main goal is to avoid client connection when a laptop will be into our Office.&lt;/P&gt;&lt;P&gt;The first option, to check if a client is connecting to an internal interface, is not feasible because as i've said this cluster it's on our DC and cannot be reached to a private interface from the office, but just over a site-to-site VPN. Third option of DC also is not a good solution because we are passing all Active Directory stuff over VPN. So i've configured the second option, added our office and DC subnet to internals network (and also specified our Wifi SSID).&lt;/P&gt;&lt;P&gt;Because we are still in smart-working (and cannot have access to office), i've setup a new SSID at my home using one of the subnet of internals network specified on SG. Then i've disconnected manually the VPN client (using "trac disconnect"), then connect again but it looks like that the source subnet is not considered as internal but just as external.&lt;/P&gt;&lt;P&gt;Do I need to add also the public IP inside the internals network?&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jan 2021 20:22:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Location-Awareness-Clarifications/m-p/109213#M14810</guid>
      <dc:creator>stich86</dc:creator>
      <dc:date>2021-01-28T20:22:56Z</dc:date>
    </item>
    <item>
      <title>Re: Location Awareness Clarifications</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Location-Awareness-Clarifications/m-p/109397#M14905</link>
      <description>&lt;P&gt;Is that segment you set up at home also in the RemoteAccess encryption domain?&lt;/P&gt;</description>
      <pubDate>Mon, 01 Feb 2021 03:21:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Location-Awareness-Clarifications/m-p/109397#M14905</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-02-01T03:21:32Z</dc:date>
    </item>
    <item>
      <title>Re: Location Awareness Clarifications</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Location-Awareness-Clarifications/m-p/109408#M14911</link>
      <description>&lt;P&gt;Yes,&amp;nbsp;&lt;/P&gt;&lt;P&gt;One of the subnet is also into RemoteAccess because I need to reach some resources into my office (NAS, DC and other services)&lt;/P&gt;</description>
      <pubDate>Mon, 01 Feb 2021 07:46:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Location-Awareness-Clarifications/m-p/109408#M14911</guid>
      <dc:creator>stich86</dc:creator>
      <dc:date>2021-02-01T07:46:11Z</dc:date>
    </item>
    <item>
      <title>Re: Location Awareness Clarifications</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Location-Awareness-Clarifications/m-p/109503#M14927</link>
      <description>&lt;P&gt;A TAC case may be needed here to clarify what's going on.&lt;/P&gt;</description>
      <pubDate>Mon, 01 Feb 2021 22:50:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Location-Awareness-Clarifications/m-p/109503#M14927</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-02-01T22:50:08Z</dc:date>
    </item>
  </channel>
</rss>

