<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SecuRemote with IP Pool NAT in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134556#M13071</link>
    <description>&lt;P&gt;Incoming from what: the SecuRemote client?&lt;BR /&gt;The primer you linked to previously should cover that.&lt;BR /&gt;&lt;BR /&gt;Incoming traffic to the SecuRemote clients aren't supported.&lt;BR /&gt;That requires Office Mode, which is not supported with SecuRemote.&lt;/P&gt;</description>
    <pubDate>Sat, 20 Nov 2021 00:30:11 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2021-11-20T00:30:11Z</dc:date>
    <item>
      <title>SecuRemote with IP Pool NAT</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/10702#M13063</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Folks, I'm sitting here and the old #SecuRemote&amp;nbsp;with R80.10 driving me crazy. I have configured IP Pool NAT in my R80.10 Cluster.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;IMG class="image-1 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/72924_pastedImage_1.png" /&gt;&lt;/P&gt;&lt;P&gt;In 77.30 this was working properly. Since R80.10 it is not working any longer and I get IP's from a DHCP Server somewhere in the wild from my net. Do you have any ideas? How to get my IP Pool back?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just for info, we just using the free SecuRemote licences.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 29 Oct 2018 14:01:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/10702#M13063</guid>
      <dc:creator>Thorsten_Kowalc</dc:creator>
      <dc:date>2018-10-29T14:01:10Z</dc:date>
    </item>
    <item>
      <title>Re: SecuRemote with IP Pool NAT</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/10703#M13064</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Office Mode is not supported with the SecuRemote client.&lt;/P&gt;&lt;P&gt;The fact it worked in R77.30 could be considered a bug.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 03 Nov 2018 07:20:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/10703#M13064</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-11-03T07:20:36Z</dc:date>
    </item>
    <item>
      <title>Re: SecuRemote with IP Pool NAT</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/10704#M13065</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Thorsten,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I guess it is no longer relevant, but your screenshot does not show the IP Pool-NAT settings, should be this&amp;nbsp;Tab :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-1 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/76532_IP-Pool-NAT.png" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have&amp;nbsp;tested it with R80 a while ago and it was still working&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Matthias&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Dec 2018 12:16:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/10704#M13065</guid>
      <dc:creator>Matthias_Haas</dc:creator>
      <dc:date>2018-12-20T12:16:34Z</dc:date>
    </item>
    <item>
      <title>Re: SecuRemote with IP Pool NAT</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134534#M13066</link>
      <description>&lt;P&gt;I know it has been a long time since this post last update, but I'm facing the same situation. I can't use the IP Pool NAT, even when I've set the network at the right location (image below). It is really like there is a DHCP server somewhere providing addresses that even are configured on the firewalls.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Someone knows how to implement this feature with SecuRemote?&lt;BR /&gt;&lt;BR /&gt;OBS: I have read the article from&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;about the use with SecuRemote (&lt;A href="https://community.checkpoint.com/t5/Remote-Access-VPN/Quick-Primer-on-How-to-Configure-your-Gateway-for-SecuRemote/m-p/79081#M2717" target="_self"&gt;Quick Primer on How to Configure your Gateway for SecuRemote&lt;/A&gt;&lt;SPAN&gt;) but I think I'm missing something.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="I_Santos_0-1637344453768.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14325iC7C2183ABC9AC749/image-size/medium?v=v2&amp;amp;px=400" role="button" title="I_Santos_0-1637344453768.png" alt="I_Santos_0-1637344453768.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Nov 2021 18:03:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134534#M13066</guid>
      <dc:creator>I_Santos</dc:creator>
      <dc:date>2021-11-19T18:03:06Z</dc:date>
    </item>
    <item>
      <title>Re: SecuRemote with IP Pool NAT</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134535#M13067</link>
      <description>&lt;P&gt;DHCP implies Office Mode, which SecuRemote does not provide.&lt;BR /&gt;That means DHCP is irrelevant, you can only use IP Pool NAT.&lt;BR /&gt;Each client will have something like a 192.168.0.1 assigned to it on the client itself.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Nov 2021 18:15:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134535#M13067</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-11-19T18:15:41Z</dc:date>
    </item>
    <item>
      <title>Re: SecuRemote with IP Pool NAT</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134540#M13068</link>
      <description>&lt;P&gt;Thanks for replying&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;.&lt;BR /&gt;&lt;BR /&gt;In my case, the SecuRemote client is getting a 10.8.220.0/24 network, which is not part of the topology, but I have one network object with this range. I can see new routes from the gateway VPN domain, and the output of "route print" points this routes to an IP of 10.8.220.0/24 range.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Can I state that if I am using SecuRemote I need to see the IP Pool NAT address range at the client?&lt;/P&gt;</description>
      <pubDate>Fri, 19 Nov 2021 18:49:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134540#M13068</guid>
      <dc:creator>I_Santos</dc:creator>
      <dc:date>2021-11-19T18:49:33Z</dc:date>
    </item>
    <item>
      <title>Re: SecuRemote with IP Pool NAT</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134544#M13069</link>
      <description>&lt;P&gt;Some IP address must be assigned to the client in order to route traffic for the relevant subnets through the Remote Access VPN interface.&lt;BR /&gt;In the case of Office Mode, we use the IP address assigned as part of that process.&lt;BR /&gt;For SecuRemote, we choose a subnet that doesn't conflict (it varies), and it probably won't be the subnet configured for IP Pool NAT.&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Nov 2021 19:12:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134544#M13069</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-11-19T19:12:57Z</dc:date>
    </item>
    <item>
      <title>Re: SecuRemote with IP Pool NAT</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134545#M13070</link>
      <description>&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;&lt;EM&gt;For SecuRemote, we choose a subnet that doesn't conflict (it varies)&lt;/EM&gt;&lt;/STRONG&gt;, and it probably won't be the subnet configured for IP Pool NAT.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;So, can I assume that it is not user defined?&lt;/P&gt;&lt;P&gt;Sorry to stick on this, but I'm struggling to configure firewall rules and access from SecuRemote traffic. Can you give an example of how can I point my rules and routes to manage the SecuRemote incoming traffic?&lt;/P&gt;</description>
      <pubDate>Fri, 19 Nov 2021 19:25:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134545#M13070</guid>
      <dc:creator>I_Santos</dc:creator>
      <dc:date>2021-11-19T19:25:50Z</dc:date>
    </item>
    <item>
      <title>Re: SecuRemote with IP Pool NAT</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134556#M13071</link>
      <description>&lt;P&gt;Incoming from what: the SecuRemote client?&lt;BR /&gt;The primer you linked to previously should cover that.&lt;BR /&gt;&lt;BR /&gt;Incoming traffic to the SecuRemote clients aren't supported.&lt;BR /&gt;That requires Office Mode, which is not supported with SecuRemote.&lt;/P&gt;</description>
      <pubDate>Sat, 20 Nov 2021 00:30:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SecuRemote-with-IP-Pool-NAT/m-p/134556#M13071</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-11-20T00:30:11Z</dc:date>
    </item>
  </channel>
</rss>

