<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Full tunnel over SSL VPN/SNX in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225682#M37617</link>
    <description>&lt;P&gt;For the full Endpoint client, you can do something like this:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk114882" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk114882&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;Not sure you can do this with SNX, though.&lt;/P&gt;</description>
    <pubDate>Wed, 04 Sep 2024 17:31:17 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2024-09-04T17:31:17Z</dc:date>
    <item>
      <title>Full tunnel over SSL VPN/SNX</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225601#M37574</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;I am seeking advice how to configure Split/Full tunnel per user/user group. The connection to VPN is over SSL portal SNX extender.&lt;/P&gt;
&lt;P&gt;Something like this.&lt;/P&gt;
&lt;P&gt;FW-A&lt;/P&gt;
&lt;P&gt;user group - A : full tunnel, no split tunneling&lt;/P&gt;
&lt;P&gt;user group - B : split tunneling only&lt;/P&gt;
&lt;P&gt;FW-B&lt;/P&gt;
&lt;P&gt;user group - C : full tunnel, no split tunneling&lt;/P&gt;
&lt;P&gt;user group - D : split tunneling only&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;environment is Multidomain with VSX and Maestro.&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 04 Sep 2024 09:44:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225601#M37574</guid>
      <dc:creator>Martin_Raska</dc:creator>
      <dc:date>2024-09-04T09:44:02Z</dc:date>
    </item>
    <item>
      <title>Re: Full tunnel over SSL VPN/SNX</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225607#M37578</link>
      <description>&lt;P&gt;could you please provide more details on the purpose of configuring split/full tunneling per user/user group in your SNX SSL portal setup?&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Could you please clarify whether you are using the Unified Access Policy or the Legacy Policy for your SSL rulebase?&lt;/P&gt;&lt;P&gt;Typically, with SNX SSL connections, when using the Legacy Policy, full tunneling may not be necessary as access is restricted to the specific applications allowed in the rulebase. This setup usually ensures that routing is managed according to the applications rather than requiring split or full tunneling.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Sep 2024 10:01:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225607#M37578</guid>
      <dc:creator>samir-brkic</dc:creator>
      <dc:date>2024-09-04T10:01:30Z</dc:date>
    </item>
    <item>
      <title>Re: Full tunnel over SSL VPN/SNX</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225628#M37588</link>
      <description>&lt;P&gt;Last time I asked TAC about it, they said it was not possible/supported.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 04 Sep 2024 13:11:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225628#M37588</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-04T13:11:55Z</dc:date>
    </item>
    <item>
      <title>Re: Full tunnel over SSL VPN/SNX</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225682#M37617</link>
      <description>&lt;P&gt;For the full Endpoint client, you can do something like this:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk114882" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk114882&lt;/A&gt;&amp;nbsp;&lt;BR /&gt;Not sure you can do this with SNX, though.&lt;/P&gt;</description>
      <pubDate>Wed, 04 Sep 2024 17:31:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225682#M37617</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-09-04T17:31:17Z</dc:date>
    </item>
    <item>
      <title>Re: Full tunnel over SSL VPN/SNX</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225747#M37641</link>
      <description>&lt;P&gt;Purpose is sell it in the same way as other competitors services (PA,FG) whos have solution for that.&lt;/P&gt;</description>
      <pubDate>Thu, 05 Sep 2024 08:46:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225747#M37641</guid>
      <dc:creator>Martin_Raska</dc:creator>
      <dc:date>2024-09-05T08:46:31Z</dc:date>
    </item>
    <item>
      <title>Re: Full tunnel over SSL VPN/SNX</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225748#M37642</link>
      <description>&lt;P&gt;I thought so.&lt;/P&gt;</description>
      <pubDate>Thu, 05 Sep 2024 08:46:49 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225748#M37642</guid>
      <dc:creator>Martin_Raska</dc:creator>
      <dc:date>2024-09-05T08:46:49Z</dc:date>
    </item>
    <item>
      <title>Re: Full tunnel over SSL VPN/SNX</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225762#M37647</link>
      <description>&lt;P&gt;You nailed it with that statement, could not agree more.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 05 Sep 2024 11:18:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/225762#M37647</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-05T11:18:46Z</dc:date>
    </item>
    <item>
      <title>Re: Full tunnel over SSL VPN/SNX</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/226158#M37745</link>
      <description>&lt;P&gt;Probably there is no full tunnel / hub mode in SNX but you can follow sk32111 Configuring Different Encryption Domains for Different User Groups in SNX and try a "All Internet" Group as Encryption Domain to get a full tunnel for specific user groups.&lt;/P&gt;</description>
      <pubDate>Tue, 10 Sep 2024 14:27:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Full-tunnel-over-SSL-VPN-SNX/m-p/226158#M37745</guid>
      <dc:creator>OliverBayerlein</dc:creator>
      <dc:date>2024-09-10T14:27:48Z</dc:date>
    </item>
  </channel>
</rss>

