<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Using updatable objects/domains in RA vpn domain in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Using-updatable-objects-domains-in-RA-vpn-domain/m-p/244373#M2216</link>
    <description>&lt;P&gt;FWIW, I asked the customer to create new group that starts with exclusions_ as a name and try, so they will let me know if that made any difference.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Thu, 20 Mar 2025 18:56:04 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2025-03-20T18:56:04Z</dc:date>
    <item>
      <title>Using updatable objects/domains in RA vpn domain</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Using-updatable-objects-domains-in-RA-vpn-domain/m-p/244369#M2215</link>
      <description>&lt;P&gt;Hey guys,&lt;/P&gt;
&lt;P&gt;Hope someone can confirm this for me. Customer has case with TAC about this and they were told its not supported, and though they asked for something stating so, they were never provided an sk or document indicating its not supported.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What they want to do is add a domain or updatabje object to RA vpn domain, which in itself does work, but then remote users can NOT access the desired object by fqdn, only an IP address.&lt;/P&gt;
&lt;P&gt;Not sure if below would apply or not...thoughts?&lt;/P&gt;
&lt;P&gt;Mgmt is S1C R82 and gateways are cluster R81.20 jumbo 92.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.checkpoint.com/t5/General-Topics/Domain-objects-in-remote-access-encryption-domain/td-p/207148" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/General-Topics/Domain-objects-in-remote-access-encryption-domain/td-p/207148&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Mar 2025 18:39:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Using-updatable-objects-domains-in-RA-vpn-domain/m-p/244369#M2215</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-03-20T18:39:15Z</dc:date>
    </item>
    <item>
      <title>Re: Using updatable objects/domains in RA vpn domain</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Using-updatable-objects-domains-in-RA-vpn-domain/m-p/244373#M2216</link>
      <description>&lt;P&gt;FWIW, I asked the customer to create new group that starts with exclusions_ as a name and try, so they will let me know if that made any difference.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 20 Mar 2025 18:56:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Using-updatable-objects-domains-in-RA-vpn-domain/m-p/244373#M2216</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-03-20T18:56:04Z</dc:date>
    </item>
    <item>
      <title>Re: Using updatable objects/domains in RA vpn domain</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Using-updatable-objects-domains-in-RA-vpn-domain/m-p/244379#M2217</link>
      <description>&lt;P&gt;Official TAC answer, though customer did try exclusion_ approach, but no joy...o well, guess not supported : - (&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;********************&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-olk-copy-source="MessageBody"&gt;For Remote Access VPN, URLs are not supported in the encryption domain. The closest thing that you can use is updatable object in a group with exclusions:&lt;BR /&gt;&lt;BR /&gt;&lt;A title="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_RemoteAccessVPN_AdminGuide/Content/Topics-VPNRG/Dynamic-Split-Tunneling-for-SaaS.htm?Highlight=exclusion" href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_RemoteAccessVPN_AdminGuide/Content/Topics-VPNRG/Dynamic-Split-Tunneling-for-SaaS.htm?Highlight=exclusion" target="_blank" rel="noopener noreferrer" data-auth="NotApplicable" data-linkindex="0" data-ogsc=""&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_RemoteAccessVPN_AdminGuide/Content/Topics-VPNRG/Dynamic-Split-Tunneling-for-SaaS.htm?Highlight=exclusion&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here is additional documentation:&amp;nbsp;&lt;A title="https://support.checkpoint.com/results/sk/sk131852" href="https://support.checkpoint.com/results/sk/sk131852" target="_blank" rel="noopener noreferrer" data-auth="NotApplicable" data-linkindex="1" data-ogsc=""&gt;https://support.checkpoint.com/results/sk/sk131852&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;One other options is to use Mobile Access VPN and configure a Web Application:&lt;BR /&gt;&lt;BR /&gt;&lt;A title="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_MobileAccess_AdminGuide/Content/Topics-MABG/Mobile-Access-Applications.htm" href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_MobileAccess_AdminGuide/Content/Topics-MABG/Mobile-Access-Applications.htm" target="_blank" rel="noopener noreferrer" data-auth="NotApplicable" data-linkindex="2" data-ogsc=""&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_MobileAccess_AdminGuide/Content/Topics-MABG/Mobile-Access-Applications.htm&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Mar 2025 21:56:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Using-updatable-objects-domains-in-RA-vpn-domain/m-p/244379#M2217</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-03-20T21:56:01Z</dc:date>
    </item>
  </channel>
</rss>

