<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SCV Enforcement Per Gateway (Not Global) in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/114467#M13670</link>
    <description>&lt;P&gt;OK. I understand that SCV apply for all computers that connect to the VPN. However, I have two client that have providers that using their computers personal of their organization. When I see exceptions is it not possible?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Julian_Sanchez_0-1616595504042.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/11128iD1D4FE64EDC22DCC/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Julian_Sanchez_0-1616595504042.png" alt="Julian_Sanchez_0-1616595504042.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Or I need give a ip address of office mode static for allowed? I think SCV is a good options, however if it not allowed exclusiones is not enough&lt;/P&gt;</description>
    <pubDate>Wed, 24 Mar 2021 14:19:12 GMT</pubDate>
    <dc:creator>Julian_Sanchez</dc:creator>
    <dc:date>2021-03-24T14:19:12Z</dc:date>
    <item>
      <title>SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21454#M13645</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is there any chance for SCV enforcement per gateway and not global?&lt;/P&gt;&lt;P&gt;It's very problematic to have same rules for different gateways.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For example, I've a customer who has multiple security gateways managed by the same management server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now he wants to validate the PCs domain membership for one of the gateways but don't want this requirement to exist on another. I cannot find anyway to workaround this with support.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 May 2018 20:40:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21454#M13645</guid>
      <dc:creator>Alexander_Urits</dc:creator>
      <dc:date>2018-05-03T20:40:48Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21455#M13646</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;In R80.20? Not that I'm aware of.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 May 2018 21:44:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21455#M13646</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-05-03T21:44:50Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21456#M13647</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Even in R80.70, or any other possible workaround would be appreciated.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 May 2018 21:47:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21456#M13647</guid>
      <dc:creator>Alexander_Urits</dc:creator>
      <dc:date>2018-05-03T21:47:43Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21457#M13648</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I've branched this into a new thread in the &lt;A href="https://community.checkpoint.com/space/2056"&gt;Remote Access&lt;/A&gt;‌ section.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The workarounds I see are:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Use a client that explicitly doesn't require SCV to connect to the relevant gateway and enable that option (see below)&lt;/LI&gt;&lt;LI&gt;Exclude the hosts/services that are accessible from that gateway (see below)&lt;/LI&gt;&lt;LI&gt;Put the gateways in different management domains&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Can you describe the use case you're trying to support with this request?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG class="image-1 jive-image" src="https://community.checkpoint.com/legacyfs/online/checkpoint/65334_pastedImage_1.png" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 May 2018 22:51:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21457#M13648</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-05-03T22:51:47Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21458#M13649</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&amp;gt;&amp;gt; Can you describe the use case you're trying to support with this request?&lt;/P&gt;&lt;P&gt;The use case is pretty simple as described before:&lt;/P&gt;&lt;P&gt;I've a customer who has multiple security gateways managed by the same management server.&lt;/P&gt;&lt;P style="padding: 0px; min-height: 8pt;"&gt;&lt;/P&gt;&lt;P&gt;Now he&amp;nbsp;needs to validate the PCs domain membership for one of the gateways (some kind of regulation demand), but don't want this requirement to exist on another. (On other gateway even local VPN authentication would be satisfactory.)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The SCV exceptions are not good enough for this, since they are only host and service based - even cannot add networks (adding hundreds of hosts doesn't seem to be a good option).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 May 2018 22:59:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21458#M13649</guid>
      <dc:creator>Alexander_Urits</dc:creator>
      <dc:date>2018-05-03T22:59:21Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21459#M13650</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If the hosts accessed from each gateway are different, then implement the exclusion workaround above.&lt;/P&gt;&lt;P&gt;It will do the SCV check on the other gateway but still permit access.&lt;/P&gt;&lt;P&gt;Otherwise, you'll have to manage the other gateway with a separate management domain to have different SCV settings at the moment.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 May 2018 23:07:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21459#M13650</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-05-03T23:07:44Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21460#M13651</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The host are different, but I need to allow whole networks (the other gateway has also  S2S VPN to additional gateways and the VPN clients should be able to access those networks too, via this site).&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 May 2018 23:12:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21460#M13651</guid>
      <dc:creator>Alexander_Urits</dc:creator>
      <dc:date>2018-05-03T23:12:10Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21461#M13652</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;SVC can be configured in the SMS local.scv file (see sk41336 and sk38702 for details) that is transmitted to the GW during policy install. As a workaround, it would be possible to edit the file, install policy on the special GW and then undo the edits.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 May 2018 08:59:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21461#M13652</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2018-05-04T08:59:50Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21462#M13653</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I've thought of doing the same action described by &lt;A href="https://community.checkpoint.com/migrated-users/54845"&gt;https://community.checkpoint.com/people/g.alba066e051-da82-3e7a-84e6-2bcbff226984&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 May 2018 14:29:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21462#M13653</guid>
      <dc:creator>XavierBens</dc:creator>
      <dc:date>2018-05-04T14:29:34Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21463#M13654</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I don't think that this workaround is really usable.&lt;BR /&gt;Since it would require doing it again and again (with every change in policy, it would require full attention for this issue).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm wondering if there is someone out there who is really uses this SCV feature in a real work scenario.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Or if there is any other way to accomplish the task (of letting only domain joined computer to be able to connect via VPN)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 May 2018 19:35:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21463#M13654</guid>
      <dc:creator>Alexander_Urits</dc:creator>
      <dc:date>2018-05-04T19:35:01Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21464#M13655</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The part that seems to be unique to your customer is having different gateways managed by the same domain with different SCV policies.&lt;/P&gt;&lt;P&gt;Most organizations that implement SCV do so for all their gateways, not just for specific ones.&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 May 2018 19:39:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21464#M13655</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-05-04T19:39:15Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21465#M13656</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok, let's say that what you say that's the mainstream.&lt;/P&gt;&lt;P&gt;What about different policies for different users? Is that also something extraordinary?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 May 2018 20:16:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21465#M13656</guid>
      <dc:creator>Alexander_Urits</dc:creator>
      <dc:date>2018-05-04T20:16:21Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21466#M13657</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There are usually minimum standards to apply to all users who connect, regardless of who they are.&lt;/P&gt;&lt;P&gt;There might be some different standards based on who the user is and what they access.&lt;/P&gt;&lt;P&gt;Mobile Access Blade with Endpoint Security on Demand offers the kind of granularity you're looking for, but that's a different mechanism from SCV.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 May 2018 20:31:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21466#M13657</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-05-04T20:31:18Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21467#M13658</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Well I'm aware of the&amp;nbsp;&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;Mobile Access Blade and the Endpoint Security on Demand.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #ffffff;"&gt;But my feeling is that the MOB is a product that is not being developed for years. It's even abandoned (not yet included) from the R80.10 GUI.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 05 May 2018 07:44:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21467#M13658</guid>
      <dc:creator>Alexander_Urits</dc:creator>
      <dc:date>2018-05-05T07:44:33Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21468#M13659</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;While there are some features/functions of Mobile Access that require the old SmartDashboard in R80.x, we actually support unified policies that include Mobile Access in R80.10.&lt;/P&gt;&lt;P&gt;In terms of major features, we've developed Reverse Proxy functionality and there has been some work done to replace the need for Java for SNX (because browsers stopped supporting it).&lt;/P&gt;&lt;P&gt;So to say that Mobile Access Blade hasn't&amp;nbsp;had&amp;nbsp;development in years is not true.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 05 May 2018 21:56:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21468#M13659</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-05-05T21:56:57Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/99531#M13660</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Hope you are doing good.&lt;/P&gt;&lt;P&gt;Need assistance on SCV for R80.30 SMS and Gateway, as we are planning to implement Domain Membership Validation using SCV checks.&lt;/P&gt;&lt;P&gt;We have Checkpoint Gateways in Multiple Regions with Remote Access VPN on each gateway (all managed by the same SMS), the domain for machines in each region are different from each other.&lt;/P&gt;&lt;P&gt;So wanted to confirm if we have an option to deploy Domain Validation specific to each gateway.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2020 03:29:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/99531#M13660</guid>
      <dc:creator>Lithin_Mathew</dc:creator>
      <dc:date>2020-10-20T03:29:20Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/99533#M13661</link>
      <description>&lt;P&gt;That is described by this comment: &lt;A href="https://community.checkpoint.com/t5/Remote-Access-VPN/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21461/highlight/true#M760" target="_blank"&gt;https://community.checkpoint.com/t5/Remote-Access-VPN/SCV-Enforcement-Per-Gateway-Not-Global/m-p/21461/highlight/true#M760&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Or you could include a check for all relevant domains on all gateways?&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2020 04:08:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/99533#M13661</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-10-20T04:08:21Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/99877#M13662</link>
      <description>&lt;P&gt;Thank you&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp; for your quick response as usual.&lt;/P&gt;&lt;P&gt;I tried to add all the domains to the Registry Monitor, but it does not work, could you confirm if the below script I am using is correct:&lt;/P&gt;&lt;P&gt;: (RegMonitor&lt;BR /&gt;:type (plugin)&lt;BR /&gt;:parameters (&lt;BR /&gt;:string ("HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy\History\MachineDomain=abc.domain")&lt;/P&gt;&lt;P&gt;:string ("HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy\History\MachineDomain=def.domain")&lt;BR /&gt;:begin_admin (admin)&lt;BR /&gt;:send_log (alert)&lt;BR /&gt;:mismatchmessage ("Your computer doesn't meet the domain membership requirements.")&lt;BR /&gt;:end (admin)&lt;BR /&gt;)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Oct 2020 16:42:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/99877#M13662</guid>
      <dc:creator>Lithin_Mathew</dc:creator>
      <dc:date>2020-10-22T16:42:05Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/99905#M13663</link>
      <description>&lt;P&gt;This condition can't possibly work because both conditions can't possibly be true at the same time.&lt;BR /&gt;Also, you don't need to include HKEY_LOCAL_MACHINE\ as that's assumed.&lt;BR /&gt;Probably something like:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;LI-CODE lang="c"&gt;: (RegMonitor
  :type (plugin)
  :parameters (
    :begin_or(or1)
      :string ("SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy\History\MachineDomain=abc.domain")
      :string ("SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy\History\MachineDomain=def.domain")
    :end(or1)
    :begin_admin(admin)
      :send_log(alert)
      :mismatchmessage("Your computer doesn't meet the domain membership requirements.")
    :end(admin)
)&lt;/LI-CODE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Refer to the&amp;nbsp;&lt;A href="http://downloads.checkpoint.com/dc/download.htm?ID=36186" target="_self"&gt;E80.60 / E80.61 / E80.62 / E80.64 Remote Access Clients for Windows OS Administration Guide&lt;/A&gt;&amp;nbsp;for additional syntax on SCV.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Oct 2020 23:02:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/99905#M13663</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-10-22T23:02:39Z</dc:date>
    </item>
    <item>
      <title>Re: SCV Enforcement Per Gateway (Not Global)</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/103003#M13664</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;I tried using the above lines in the local.scv file but the the policy install failed, error message "Failed to merge SCV policies. Local SCV file may be corrupt".&lt;/P&gt;&lt;P&gt;Attached the screenshot for your reference.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 23 Nov 2020 14:35:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SCV-Enforcement-Per-Gateway-Not-Global/m-p/103003#M13664</guid>
      <dc:creator>Lithin_Mathew</dc:creator>
      <dc:date>2020-11-23T14:35:26Z</dc:date>
    </item>
  </channel>
</rss>

