<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to disable split tunneling for some users while enabling it for other users in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-disable-split-tunneling-for-some-users-while-enabling-it/m-p/8081#M13388</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Setup is R80.10 in VSX, two gateways in cluster, VSLS. One VS is acting as the VPN gateway.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need to disable split tunneling for some users. So I need to route all traffic to the gateway for them.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But I also need to allo split tunneling for other users.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need to force this settings; I don't want to let users decide or configure it on the client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;VPN clients used are either Capsule VPN running on Windows 10, or Remote Access VPN client for Windows.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 12 Jul 2018 20:37:54 GMT</pubDate>
    <dc:creator>Louis_Poulin</dc:creator>
    <dc:date>2018-07-12T20:37:54Z</dc:date>
    <item>
      <title>How to disable split tunneling for some users while enabling it for other users</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-disable-split-tunneling-for-some-users-while-enabling-it/m-p/8081#M13388</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Setup is R80.10 in VSX, two gateways in cluster, VSLS. One VS is acting as the VPN gateway.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need to disable split tunneling for some users. So I need to route all traffic to the gateway for them.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But I also need to allo split tunneling for other users.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need to force this settings; I don't want to let users decide or configure it on the client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;VPN clients used are either Capsule VPN running on Windows 10, or Remote Access VPN client for Windows.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Jul 2018 20:37:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-disable-split-tunneling-for-some-users-while-enabling-it/m-p/8081#M13388</guid>
      <dc:creator>Louis_Poulin</dc:creator>
      <dc:date>2018-07-12T20:37:54Z</dc:date>
    </item>
    <item>
      <title>Re: How to disable split tunneling for some users while enabling it for other users</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-disable-split-tunneling-for-some-users-while-enabling-it/m-p/8082#M13389</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This was discussed in&amp;nbsp;&lt;A href="https://community.checkpoint.com/message/20006-re-exclude-subnet" target="_blank"&gt;https://community.checkpoint.com/message/20006-re-exclude-subnet&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The relevant SK:&amp;nbsp;&lt;A class="link-titled" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk114882" title="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk114882" rel="nofollow noopener noreferrer" target="_blank"&gt;Remote Access clients configuration based on group membership&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Jun 2019 09:00:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-disable-split-tunneling-for-some-users-while-enabling-it/m-p/8082#M13389</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-06-21T09:00:08Z</dc:date>
    </item>
    <item>
      <title>Re: How to disable split tunneling for some users while enabling it for other users</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-disable-split-tunneling-for-some-users-while-enabling-it/m-p/51244#M13390</link>
      <description>&lt;P&gt;Hi, I followed the aforementioned sk114882 and it did not work for me.&lt;/P&gt;&lt;P&gt;Our setup is the following: r80.20m2 manager which is a vm and&amp;nbsp; 2 physical appliances running r80.10.&lt;/P&gt;&lt;P&gt;I followed the exact same procedure in order to disable split tunneling (ie route all traffic via the gateway) on a Checkpoint group named "ttm_finance". I did the changes on the relevant config (finance.ttm) which resides both on the manager as well as the gateways under $FWDIR/conf directory&lt;/P&gt;&lt;P&gt;Whenever I initiate a client2site vpn connection with a user who belongs to&amp;nbsp;"ttm_finance" , I cannot see the extra default route&amp;nbsp; on my PC.&lt;/P&gt;&lt;P&gt;Obviously there's something I am missing...&lt;/P&gt;&lt;P&gt;Any guidance should be appreciated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;</description>
      <pubDate>Thu, 18 Apr 2019 11:02:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-disable-split-tunneling-for-some-users-while-enabling-it/m-p/51244#M13390</guid>
      <dc:creator>Nikolaos_Liakop</dc:creator>
      <dc:date>2019-04-18T11:02:47Z</dc:date>
    </item>
  </channel>
</rss>

