<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How does Normal mode work in RA VPN? in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14776#M96283</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I suspect that in the absence of the Office Mode supplied IPs, you'll simply end-up with conventional tunnel containing one encryption domains on each side. So the client will be aware of the networks behind the gateway and the gateway, about client's network.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 12 Apr 2018 13:00:43 GMT</pubDate>
    <dc:creator>Vladimir</dc:creator>
    <dc:date>2018-04-12T13:00:43Z</dc:date>
    <item>
      <title>How does Normal mode work in RA VPN?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14775#M96282</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If Office mode is enabled Security gateway will assign a IP from the pool to Client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If we are not enabling Office mode, how the traffic will flow in our network?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Apr 2018 12:15:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14775#M96282</guid>
      <dc:creator>Kumar</dc:creator>
      <dc:date>2018-04-12T12:15:46Z</dc:date>
    </item>
    <item>
      <title>Re: How does Normal mode work in RA VPN?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14776#M96283</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I suspect that in the absence of the Office Mode supplied IPs, you'll simply end-up with conventional tunnel containing one encryption domains on each side. So the client will be aware of the networks behind the gateway and the gateway, about client's network.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Apr 2018 13:00:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14776#M96283</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2018-04-12T13:00:43Z</dc:date>
    </item>
    <item>
      <title>Re: How does Normal mode work in RA VPN?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14777#M96284</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If that might be the case, The IP address provided for the client (by ISP) may overlap with our organisation network.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Apr 2018 13:08:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14777#M96284</guid>
      <dc:creator>Kumar</dc:creator>
      <dc:date>2018-04-12T13:08:30Z</dc:date>
    </item>
    <item>
      <title>Re: How does Normal mode work in RA VPN?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14778#M96285</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Îf Office Mode is not used, the RA VPN client connects to the GW using its local IP. This IP has to be known by the GW and access has to be granted. SecuRemote, the licenseless CP RA VPN client always uses this kind of connection.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But this will not work if RA VPN clients get their IPs dynamically or their IP is changed from time to time / all 24 hours.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Apr 2018 13:56:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14778#M96285</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2018-04-12T13:56:51Z</dc:date>
    </item>
    <item>
      <title>Re: How does Normal mode work in RA VPN?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14779#M96286</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That’s the reason for Office Mode &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Vladimir Yakovlev &lt;/P&gt;&lt;P&gt;973.558.2738&lt;/P&gt;&lt;P&gt;vlad@eversecgroup.com&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Apr 2018 13:58:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14779#M96286</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2018-04-12T13:58:12Z</dc:date>
    </item>
    <item>
      <title>Re: How does Normal mode work in RA VPN?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14780#M96287</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;"&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;This IP has to be known by the GW and access has to be granted." I am not sure that this is an accurate statement.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;The SecuRemote connects to the gateway identifying itself by the public IP of the router/gateway it is coming from.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;I do not think that the GW should be in any way aware of either the public IP or the private IPs assigned to the SecuRemote clients.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;I do believe that major limitation of SecuRemote is the lack of support for multiple clients (or concurrent connections) originating from behind the same public IP.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;If I am wrong,&amp;nbsp;please do correct my assumptions.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Apr 2018 14:52:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14780#M96287</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2018-04-12T14:52:24Z</dc:date>
    </item>
    <item>
      <title>Re: How does Normal mode work in RA VPN?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14781#M96288</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;"&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;I do not think that the GW should be in any way aware of either the public IP or the private IPs assigned to the SecuRemote clients.&lt;/SPAN&gt;" - afaik VPN does not work if the peer is not known.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Major limitation of SecuRemote is that Office Mode is not supported.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Apr 2018 06:57:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14781#M96288</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2018-04-13T06:57:13Z</dc:date>
    </item>
    <item>
      <title>Re: How does Normal mode work in RA VPN?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14782#M96289</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;"&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;VPN does not work if the peer is not known" if this were true, no mobile IPSec remote access solution would work &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://community.checkpoint.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;Yes, the Office Mode is not supported by SecuRemote, but this simply means that you loose the ability to control the IP addressing schema for remote clients and the possibility of conflicting encryption domains will be present.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 13 Apr 2018 12:07:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/How-does-Normal-mode-work-in-RA-VPN/m-p/14782#M96289</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2018-04-13T12:07:11Z</dc:date>
    </item>
  </channel>
</rss>

