<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Remote access Menu under Global Properties in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-access-Menu-under-Global-Properties/m-p/226132#M3247</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/96626"&gt;@Ihenock1011&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you want to know the performance impact of changing a&lt;SPAN&gt;lgorithms this sk useful. I think this is a most important thing in the RemoteAccess GW's life.:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk105119" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk105119&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2024-09-10 13_49_48-Relative speeds of algorithms for IPsec and SSL.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/27546i85E343B4BB3ECCDF/image-size/medium?v=v2&amp;amp;px=400" role="button" title="2024-09-10 13_49_48-Relative speeds of algorithms for IPsec and SSL.png" alt="2024-09-10 13_49_48-Relative speeds of algorithms for IPsec and SSL.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;From the help:&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV id="mc-main-content" role="main"&gt;
&lt;P class="tpbodytext"&gt;&lt;STRONG class="bold"&gt;Support Authentication Methods&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL class="listbullet"&gt;
&lt;LI class="listbullet"&gt;&lt;STRONG class="bold"&gt;Pre-Shared Secret &lt;/STRONG&gt;- the user password is specified in the &lt;STRONG class="bold"&gt;Authentication&lt;/STRONG&gt; tab in the user's IKE properties (in the user properties window: &lt;STRONG class="bold"&gt;Encryption tab &amp;gt; Edit&lt;/STRONG&gt;).&lt;/LI&gt;
&lt;LI class="listbullet"&gt;&lt;STRONG class="bold"&gt;Public Key Signatures&lt;/STRONG&gt; - enable Public Key in the &lt;STRONG class="bold"&gt;Authentication&lt;/STRONG&gt; tab in the user's IKE properties. If the certificate presented by the user is issued by the Internal CA, generation of the user's certificate is done in the &lt;STRONG class="bold"&gt;Certificate&lt;/STRONG&gt; tab of user properties (in the user properties window: &lt;STRONG class="bold"&gt;Encryption tab &amp;gt; Edit&lt;/STRONG&gt;).&lt;/LI&gt;
&lt;LI class="listbullet"&gt;&lt;STRONG class="bold"&gt;Supports Legacy Authentication for SecureClient- &lt;/STRONG&gt;This includes Hybrid mode which means other VPN authentication methods, as specified in the &lt;STRONG class="bold"&gt;Authentication&lt;/STRONG&gt; tab of the user properties.&lt;/LI&gt;
&lt;LI class="listbullet"&gt;&lt;STRONG class="bold"&gt;Support Legacy EAP - &lt;/STRONG&gt;EAP stands for Extensible Authentication Protocol.&lt;/LI&gt;
&lt;LI class="listbullet"&gt;S&lt;STRONG class="bold"&gt;upport L2TP with Pre-Shared Key&lt;/STRONG&gt; - Use a centrally managed pre-shared key for IKE. Type in the pre-shared key.&lt;/LI&gt;
&lt;/UL&gt;
&lt;/DIV&gt;</description>
    <pubDate>Tue, 10 Sep 2024 12:04:08 GMT</pubDate>
    <dc:creator>AkosBakos</dc:creator>
    <dc:date>2024-09-10T12:04:08Z</dc:date>
    <item>
      <title>Remote access Menu under Global Properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-access-Menu-under-Global-Properties/m-p/226117#M3244</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;
&lt;P&gt;We have CP R81.10 security gateway, I have come across the 'Remote Access' menu under Global Properties. This menu contains several settings such as 'VPN - Authentication' and 'VPN - Advanced,' among others. Could you explain the purpose of these settings and the impact of modifying them on the system's security and functionality?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;</description>
      <pubDate>Tue, 10 Sep 2024 09:45:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-access-Menu-under-Global-Properties/m-p/226117#M3244</guid>
      <dc:creator>Ihenock1011</dc:creator>
      <dc:date>2024-09-10T09:45:00Z</dc:date>
    </item>
    <item>
      <title>Re: Remote access Menu under Global Properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-access-Menu-under-Global-Properties/m-p/226123#M3245</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/96626"&gt;@Ihenock1011&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You can set various things here. To determine which setting change will ruin your Remote Access gateway depends on what you set.&lt;/P&gt;
&lt;P&gt;Please narrow down your question, and we will help.&lt;/P&gt;
&lt;P&gt;Akos&lt;/P&gt;</description>
      <pubDate>Tue, 10 Sep 2024 10:20:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-access-Menu-under-Global-Properties/m-p/226123#M3245</guid>
      <dc:creator>AkosBakos</dc:creator>
      <dc:date>2024-09-10T10:20:59Z</dc:date>
    </item>
    <item>
      <title>Re: Remote access Menu under Global Properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-access-Menu-under-Global-Properties/m-p/226126#M3246</link>
      <description>&lt;P&gt;Thanks &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/28415"&gt;@AkosBakos&lt;/a&gt;&amp;nbsp; for your response. Most specifically I want to know VPN Authentication Tab which holds Encryption Method, Encryption Algorithms, Support Authentication note that I have radius server for remote access Authentication.&lt;/P&gt;</description>
      <pubDate>Tue, 10 Sep 2024 11:16:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-access-Menu-under-Global-Properties/m-p/226126#M3246</guid>
      <dc:creator>Ihenock1011</dc:creator>
      <dc:date>2024-09-10T11:16:23Z</dc:date>
    </item>
    <item>
      <title>Re: Remote access Menu under Global Properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-access-Menu-under-Global-Properties/m-p/226132#M3247</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/96626"&gt;@Ihenock1011&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you want to know the performance impact of changing a&lt;SPAN&gt;lgorithms this sk useful. I think this is a most important thing in the RemoteAccess GW's life.:&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;A href="https://support.checkpoint.com/results/sk/sk105119" target="_blank" rel="noopener"&gt;https://support.checkpoint.com/results/sk/sk105119&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="2024-09-10 13_49_48-Relative speeds of algorithms for IPsec and SSL.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/27546i85E343B4BB3ECCDF/image-size/medium?v=v2&amp;amp;px=400" role="button" title="2024-09-10 13_49_48-Relative speeds of algorithms for IPsec and SSL.png" alt="2024-09-10 13_49_48-Relative speeds of algorithms for IPsec and SSL.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;From the help:&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV id="mc-main-content" role="main"&gt;
&lt;P class="tpbodytext"&gt;&lt;STRONG class="bold"&gt;Support Authentication Methods&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL class="listbullet"&gt;
&lt;LI class="listbullet"&gt;&lt;STRONG class="bold"&gt;Pre-Shared Secret &lt;/STRONG&gt;- the user password is specified in the &lt;STRONG class="bold"&gt;Authentication&lt;/STRONG&gt; tab in the user's IKE properties (in the user properties window: &lt;STRONG class="bold"&gt;Encryption tab &amp;gt; Edit&lt;/STRONG&gt;).&lt;/LI&gt;
&lt;LI class="listbullet"&gt;&lt;STRONG class="bold"&gt;Public Key Signatures&lt;/STRONG&gt; - enable Public Key in the &lt;STRONG class="bold"&gt;Authentication&lt;/STRONG&gt; tab in the user's IKE properties. If the certificate presented by the user is issued by the Internal CA, generation of the user's certificate is done in the &lt;STRONG class="bold"&gt;Certificate&lt;/STRONG&gt; tab of user properties (in the user properties window: &lt;STRONG class="bold"&gt;Encryption tab &amp;gt; Edit&lt;/STRONG&gt;).&lt;/LI&gt;
&lt;LI class="listbullet"&gt;&lt;STRONG class="bold"&gt;Supports Legacy Authentication for SecureClient- &lt;/STRONG&gt;This includes Hybrid mode which means other VPN authentication methods, as specified in the &lt;STRONG class="bold"&gt;Authentication&lt;/STRONG&gt; tab of the user properties.&lt;/LI&gt;
&lt;LI class="listbullet"&gt;&lt;STRONG class="bold"&gt;Support Legacy EAP - &lt;/STRONG&gt;EAP stands for Extensible Authentication Protocol.&lt;/LI&gt;
&lt;LI class="listbullet"&gt;S&lt;STRONG class="bold"&gt;upport L2TP with Pre-Shared Key&lt;/STRONG&gt; - Use a centrally managed pre-shared key for IKE. Type in the pre-shared key.&lt;/LI&gt;
&lt;/UL&gt;
&lt;/DIV&gt;</description>
      <pubDate>Tue, 10 Sep 2024 12:04:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-access-Menu-under-Global-Properties/m-p/226132#M3247</guid>
      <dc:creator>AkosBakos</dc:creator>
      <dc:date>2024-09-10T12:04:08Z</dc:date>
    </item>
    <item>
      <title>Re: Remote access Menu under Global Properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-access-Menu-under-Global-Properties/m-p/226134#M3248</link>
      <description>&lt;P&gt;SK&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/28415"&gt;@AkosBakos&lt;/a&gt;&amp;nbsp;mentioned is your best reference mate. But, having said that, I would NOT modify those settings you mentioned in global properties. I once had customer call me in panic saying, ra is broken, vpn tunnels are broken, I call her, find out she changed bunch of those settings because she read online they can help. Well, needless to say, I told her to revert it and all started working again.&lt;/P&gt;
&lt;P&gt;Im sure she had lots of explaining to do with her boss after lol&lt;/P&gt;
&lt;P&gt;Anyway, UNLESS there is a good reaosn to change them, I would not bother, just my personal opinion.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 10 Sep 2024 12:06:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-access-Menu-under-Global-Properties/m-p/226134#M3248</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-09-10T12:06:43Z</dc:date>
    </item>
  </channel>
</rss>

