<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Encryption domain for remote access VPN in Hyperscale Firewall (Maestro)</title>
    <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Encryption-domain-for-remote-access-VPN/m-p/208095#M2445</link>
    <description>&lt;P&gt;We are on 81.10 take 95, running remoteaccess VPN.&lt;/P&gt;&lt;P&gt;When we add a FQDN object to the encryption domain we see the following error ::&amp;nbsp;he main group must contain ip-based objects only.&lt;/P&gt;&lt;P&gt;Does this mean we cannot add FQDN to enc domain at all ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 07 Mar 2024 13:42:38 GMT</pubDate>
    <dc:creator>NiladriSarkar</dc:creator>
    <dc:date>2024-03-07T13:42:38Z</dc:date>
    <item>
      <title>Encryption domain for remote access VPN</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Encryption-domain-for-remote-access-VPN/m-p/208095#M2445</link>
      <description>&lt;P&gt;We are on 81.10 take 95, running remoteaccess VPN.&lt;/P&gt;&lt;P&gt;When we add a FQDN object to the encryption domain we see the following error ::&amp;nbsp;he main group must contain ip-based objects only.&lt;/P&gt;&lt;P&gt;Does this mean we cannot add FQDN to enc domain at all ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Mar 2024 13:42:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Encryption-domain-for-remote-access-VPN/m-p/208095#M2445</guid>
      <dc:creator>NiladriSarkar</dc:creator>
      <dc:date>2024-03-07T13:42:38Z</dc:date>
    </item>
    <item>
      <title>Re: Encryption domain for remote access VPN</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Encryption-domain-for-remote-access-VPN/m-p/208444#M2446</link>
      <description>&lt;P&gt;This isn't a Maestro thing, FQDNs aren't supported in any R81.10 gateway as far as I know.&lt;/P&gt;
&lt;P&gt;In R81.20 we introduced &lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_RemoteAccessVPN_AdminGuide/Content/Topics-VPNRG/Dynamic-Split-Tunneling-for-SaaS.htm" target="_blank" rel="noopener"&gt;dynamic exclusions for encryption domains&lt;/A&gt; using dynamic objects and domain objects, I don't know if you can use FQDNs to include IPs dynamically though, I can't find anything useful on that.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2024 08:40:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Encryption-domain-for-remote-access-VPN/m-p/208444#M2446</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2024-03-12T08:40:30Z</dc:date>
    </item>
    <item>
      <title>Re: Encryption domain for remote access VPN</title>
      <link>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Encryption-domain-for-remote-access-VPN/m-p/208505#M2447</link>
      <description>&lt;P&gt;Correct, this feature is only for excluding items from the encryption domain, not including.&lt;BR /&gt;I presume this should be addressed as an RFE with your local Check Point office.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2024 14:55:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Hyperscale-Firewall-Maestro/Encryption-domain-for-remote-access-VPN/m-p/208505#M2447</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-03-12T14:55:48Z</dc:date>
    </item>
  </channel>
</rss>

