<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Endpoint security encryption used E87.50 in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Endpoint-security-encryption-used-E87-50/m-p/211661#M3870</link>
    <description>&lt;P&gt;Are you asking a question?&lt;BR /&gt;For the initial connection, HTTPS is used.&lt;BR /&gt;If the client can use IKE (UDP 500) and NAT-T (UDP 4500), they will be used, else Visitor Mode (on HTTPS) will be used.&lt;BR /&gt;This applies to all VPN clients except for SNX (which uses Visitor Mode by design).&lt;/P&gt;</description>
    <pubDate>Wed, 17 Apr 2024 19:10:12 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2024-04-17T19:10:12Z</dc:date>
    <item>
      <title>Endpoint security encryption used E87.50</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Endpoint-security-encryption-used-E87-50/m-p/211651#M3869</link>
      <description>&lt;P&gt;Re&amp;nbsp; We are using E87.50 right now.&amp;nbsp;&amp;nbsp; My understanding is that if the fat client (E87.50)can't get out on certain ports it will use sslvpn (443) to get out, but if it can get out on ports ____ - not sure what they are it will use an IPSEC vpn tunnel with encyrption based on Global Properties - Remote Access - VPN authentication and encryption - Encryption algorithms - Edit&lt;/P&gt;
&lt;P&gt;The cipher suites used if it goes the sslvpn route can be seen with cipher_uitl.&lt;/P&gt;</description>
      <pubDate>Wed, 17 Apr 2024 18:39:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Endpoint-security-encryption-used-E87-50/m-p/211651#M3869</guid>
      <dc:creator>Daniel_Kavan</dc:creator>
      <dc:date>2024-04-17T18:39:31Z</dc:date>
    </item>
    <item>
      <title>Re: Endpoint security encryption used E87.50</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Endpoint-security-encryption-used-E87-50/m-p/211661#M3870</link>
      <description>&lt;P&gt;Are you asking a question?&lt;BR /&gt;For the initial connection, HTTPS is used.&lt;BR /&gt;If the client can use IKE (UDP 500) and NAT-T (UDP 4500), they will be used, else Visitor Mode (on HTTPS) will be used.&lt;BR /&gt;This applies to all VPN clients except for SNX (which uses Visitor Mode by design).&lt;/P&gt;</description>
      <pubDate>Wed, 17 Apr 2024 19:10:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Endpoint-security-encryption-used-E87-50/m-p/211661#M3870</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-04-17T19:10:12Z</dc:date>
    </item>
  </channel>
</rss>

