<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SSL VPN not working after upgrading to latest recommended R80.40 JHF 206 in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-VPN-not-working-after-upgrading-to-latest-recommended-R80-40/m-p/205885#M4027</link>
    <description>&lt;P&gt;Please open a TAC case for this.&lt;/P&gt;</description>
    <pubDate>Tue, 13 Feb 2024 10:47:45 GMT</pubDate>
    <dc:creator>_Val_</dc:creator>
    <dc:date>2024-02-13T10:47:45Z</dc:date>
    <item>
      <title>SSL VPN not working after upgrading to latest recommended R80.40 JHF 206</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-VPN-not-working-after-upgrading-to-latest-recommended-R80-40/m-p/205748#M4025</link>
      <description>&lt;P&gt;Greetings,&lt;/P&gt;&lt;P&gt;SSL VPN stopped working on our cluster after upgrading to the latest recommended version JHF 206, after JHF 198. When our cluster was at JHF 198, SSL VPN worked without any issues.&lt;/P&gt;&lt;P&gt;We're trying to connect from Windows 11 PCs, the version of SNX on our cluster is&amp;nbsp;&lt;STRONG&gt;800008304&lt;/STRONG&gt;(recommended version).&lt;/P&gt;&lt;P&gt;What happens is, when i log in to our SSL VPN website, then click on "Connect" in Native Applications, the Status is "connecting" until SNX disconnects by itself. Looking at the logs on the cluster, there isn't too much info aswell on why this is happening after the upgrade, the SNX connection is allowed, then it's denied for some reason. I'll attach the logs so they can be viewed.&lt;/P&gt;&lt;P&gt;Any help is appreciated on why this issue started happening after the upgrade.&lt;/P&gt;&lt;P&gt;Best Regards&lt;/P&gt;</description>
      <pubDate>Mon, 12 Feb 2024 12:00:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-VPN-not-working-after-upgrading-to-latest-recommended-R80-40/m-p/205748#M4025</guid>
      <dc:creator>Fastforza</dc:creator>
      <dc:date>2024-02-12T12:00:33Z</dc:date>
    </item>
    <item>
      <title>Re: SSL VPN not working after upgrading to latest recommended R80.40 JHF 206</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-VPN-not-working-after-upgrading-to-latest-recommended-R80-40/m-p/205843#M4026</link>
      <description>&lt;P&gt;Quick update:&lt;/P&gt;&lt;P&gt;After reverting back to JHF Take 198, SSL VPN works again on the cluster without any issues.&lt;/P&gt;&lt;P&gt;On the following list of resolved issues for R80.40 -&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/Jumbo_HFA/R80.40/R80.40/R80.40-List-of-all-Resolved-Issues.htm" target="_blank" rel="noopener"&gt;https://sc1.checkpoint.com/documents/Jumbo_HFA/R80.40/R80.40/R80.40-List-of-all-Resolved-Issues.htm&lt;/A&gt;&amp;nbsp;, from Take 198 to Take 206 , there is only one change regarding Mobile Access and it states the following:&lt;/P&gt;&lt;P&gt;PRJ-49743, PMTR-95099 - Mobile Access - "&lt;STRONG&gt;&lt;SPAN class=""&gt;UPDATE&lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN&gt;: SNX used to connect back to Mobile Access Blade's portal FQDN by resolving its IP address locally. This method makes it sensitive to DNS poisoning attacks such as those specified by TunnelCrack. Therefore, it was modified to connect back to the Security Gateway / Cluster member IP address by default."&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Could this be causing the issue on JHF Take 206? Can someone explain it more in detail what does this change mean?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Regards&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 13 Feb 2024 06:42:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-VPN-not-working-after-upgrading-to-latest-recommended-R80-40/m-p/205843#M4026</guid>
      <dc:creator>Fastforza</dc:creator>
      <dc:date>2024-02-13T06:42:25Z</dc:date>
    </item>
    <item>
      <title>Re: SSL VPN not working after upgrading to latest recommended R80.40 JHF 206</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-VPN-not-working-after-upgrading-to-latest-recommended-R80-40/m-p/205885#M4027</link>
      <description>&lt;P&gt;Please open a TAC case for this.&lt;/P&gt;</description>
      <pubDate>Tue, 13 Feb 2024 10:47:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-VPN-not-working-after-upgrading-to-latest-recommended-R80-40/m-p/205885#M4027</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2024-02-13T10:47:45Z</dc:date>
    </item>
  </channel>
</rss>

