<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Mobile Access Default Route in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/20601#M14092</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This article is more related to IPsec VPN. I am using Mobile access SSL VPN.&lt;/P&gt;&lt;P&gt;I have also checked that the Office mode IP (Office_pool) is not part of encryption domain.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 04 Jan 2018 16:15:54 GMT</pubDate>
    <dc:creator>Gaurav_Pandya</dc:creator>
    <dc:date>2018-01-04T16:15:54Z</dc:date>
    <item>
      <title>Mobile Access Default Route</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/20599#M14090</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am implementing Mobile access blade for one of the customer. All the features like, LDAP integration, Compliance check for endpoint security has been done successfully.&lt;/P&gt;&lt;P&gt;Now the requirement is that when user connects to Mobile access SSL VPN, he must use corporate Internet, means&amp;nbsp;all routes gateway should be&amp;nbsp;Corporate firewall and split tunneling feature should be disabled.&lt;/P&gt;&lt;P&gt;I have followed sk31873 and configured GUIDBedit&amp;nbsp;from "&lt;SPAN style="font-family: 'Courier New', Courier, mono;"&gt;route_all_client_traffic_to_connectra&lt;/SPAN&gt;" = True&lt;/P&gt;&lt;P&gt;Now I am getting all the routes and also security policy is in place for Office_Pool but still I am unable to browse internet.&lt;/P&gt;&lt;P&gt;In tracker, I am getting below error.&lt;/P&gt;&lt;P&gt;&lt;IMG alt="" class="image-1 jive-image j-img-original" src="https://community.checkpoint.com/legacyfs/online/checkpoint/61653_Capture.JPG" style="height: auto;" /&gt;&lt;/P&gt;&lt;P&gt;Need expert advise.&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Jan 2018 11:30:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/20599#M14090</guid>
      <dc:creator>Gaurav_Pandya</dc:creator>
      <dc:date>2018-01-03T11:30:16Z</dc:date>
    </item>
    <item>
      <title>Re: Mobile Access Default Route</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/20600#M14091</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have you followed the advice in this SK?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A class="link-titled" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk64060" title="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk64060"&gt;"Encryption Failure: according to the policy the packet should not have been decrypted" log in SmartView Tracker&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 04 Jan 2018 15:47:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/20600#M14091</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-01-04T15:47:41Z</dc:date>
    </item>
    <item>
      <title>Re: Mobile Access Default Route</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/20601#M14092</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This article is more related to IPsec VPN. I am using Mobile access SSL VPN.&lt;/P&gt;&lt;P&gt;I have also checked that the Office mode IP (Office_pool) is not part of encryption domain.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 04 Jan 2018 16:15:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/20601#M14092</guid>
      <dc:creator>Gaurav_Pandya</dc:creator>
      <dc:date>2018-01-04T16:15:54Z</dc:date>
    </item>
    <item>
      <title>Re: Mobile Access Default Route</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/20602#M14093</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Finally Issue is resolved by creating new Native application with "Internet Ranges" and apply to Mobile access Rule.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;Select 'Applications &amp;gt; Native Applications'.&lt;/LI&gt;&lt;LI&gt;Click 'New'. Select 'Authorized Locations'.&lt;/LI&gt;&lt;LI&gt;Click 'Address Range' and type in the range "0.0.0.1 - 255.255.255.254". Click 'Save'.&lt;/LI&gt;&lt;/OL&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Jan 2018 15:35:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/20602#M14093</guid>
      <dc:creator>Gaurav_Pandya</dc:creator>
      <dc:date>2018-01-10T15:35:04Z</dc:date>
    </item>
    <item>
      <title>Re: Mobile Access Default Route</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/54251#M14094</link>
      <description>&lt;P&gt;now under R80.30 I've got similar issue&lt;/P&gt;
&lt;P&gt;my MAB was working like a charm till ... R80.30 upgrade&lt;/P&gt;
&lt;P&gt;my MAB Apps are just few plus Internet (done via Native 0.0.0.1-255.255.255.245) also in place&lt;/P&gt;
&lt;P&gt;however, I do have an issue with only one little thing (all things works like a charm and I have not a single reason to complain) except ...&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;my IMAPS does not work with GMail.google.com when connected via EPS for Windows (E.80.96-E81.00).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;just IMAPS with GMail does not work (native MS Outlook client) - all the rest works ie. Exchange Server to O365 etc.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;my complete package contains all communication channels VIA MAB so all-gateway-mode not a SPLIT-TUNNEL, however all seems to be working just fine except ... GMail IMAPS (tcp).&lt;/P&gt;
&lt;P&gt;just so you know I've made an exception no IPS/ThreatPrevention in order to facilitate src/dst with IMAPS ports.&lt;/P&gt;
&lt;P&gt;still no go&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I was just wondering whether any of you guys experienced such thing or ... would rather not use MAB for both (LAN/WAN) at the same time? &lt;span class="lia-unicode-emoji" title=":face_with_tongue:"&gt;😛&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thanks in advance for all your hints&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ps. what do you think mate&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;&amp;amp;&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/181"&gt;@_Val_&lt;/a&gt;&amp;nbsp;?&lt;/P&gt;</description>
      <pubDate>Thu, 23 May 2019 14:43:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/54251#M14094</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2019-05-23T14:43:31Z</dc:date>
    </item>
    <item>
      <title>Re: Mobile Access Default Route</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/54254#M14095</link>
      <description>&lt;P&gt;sorry guys, my bad, please remove my previous post &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt; shame but I found a reason not related to CP but bloody Win10 Firewall ...&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 23 May 2019 14:52:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Mobile-Access-Default-Route/m-p/54254#M14095</guid>
      <dc:creator>Jerry</dc:creator>
      <dc:date>2019-05-23T14:52:05Z</dc:date>
    </item>
  </channel>
</rss>

