<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198848#M4351</link>
    <description>&lt;P&gt;Can you please send screenshots of how thats configured? Please blur out any sensitive info. I know 100% this is possible, as I had done it before, just cant recall now exactly how...&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Fri, 24 Nov 2023 13:54:12 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-11-24T13:54:12Z</dc:date>
    <item>
      <title>REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198830#M4345</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hello,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;We have configured Identity Provider Authentication for remote access vpn users.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;When we login with&amp;nbsp;Check Point Mobile App for Windows we have the following options.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="duo4.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23403i6780C65F76C084B5/image-size/medium?v=v2&amp;amp;px=400" role="button" title="duo4.png" alt="duo4.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;What we want is to remove the "Standard" login option.&amp;nbsp;&lt;/P&gt;&lt;P&gt;At Gateway Cluster Properties -&amp;gt; VPN clients -&amp;gt; Authentication -&amp;gt; Multiple Auth Clients Settings the configuration is the below.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="duo5.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23411i4787CB62AC04B42E/image-size/medium?v=v2&amp;amp;px=400" role="button" title="duo5.png" alt="duo5.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;Thank you&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 24 Nov 2023 10:51:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198830#M4345</guid>
      <dc:creator>ikokkoris</dc:creator>
      <dc:date>2023-11-24T10:51:05Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198836#M4346</link>
      <description>&lt;P&gt;You can remove it from gateway properties, I cant recall what its called, I believe username/password, but will check later in the lab.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 24 Nov 2023 12:37:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198836#M4346</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-11-24T12:37:03Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198840#M4347</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I can remove the username/password. The MFA becomes default authentication method, but "Standard" still remains.&lt;/P&gt;&lt;P&gt;I can't find any tab to remove it.&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 24 Nov 2023 12:55:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198840#M4347</guid>
      <dc:creator>ikokkoris</dc:creator>
      <dc:date>2023-11-24T12:55:59Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198845#M4348</link>
      <description>&lt;P&gt;I believe this is what you need to uncheck.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23412iA0AAF31436B1D918/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 24 Nov 2023 13:42:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198845#M4348</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-11-24T13:42:40Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198846#M4349</link>
      <description>&lt;P&gt;Hi Andy,&lt;/P&gt;&lt;P&gt;I have already done this without success. The Authentication method at your screenshot is the legacy one. We have configure it as "Username and Password", does it matter?&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Fri, 24 Nov 2023 13:48:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198846#M4349</guid>
      <dc:creator>ikokkoris</dc:creator>
      <dc:date>2023-11-24T13:48:20Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198847#M4350</link>
      <description>&lt;P&gt;Which Authentication method is presented after choosing Standard ?&lt;/P&gt;</description>
      <pubDate>Fri, 24 Nov 2023 13:51:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198847#M4350</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2023-11-24T13:51:45Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198848#M4351</link>
      <description>&lt;P&gt;Can you please send screenshots of how thats configured? Please blur out any sensitive info. I know 100% this is possible, as I had done it before, just cant recall now exactly how...&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 24 Nov 2023 13:54:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198848#M4351</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-11-24T13:54:12Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198854#M4352</link>
      <description>&lt;P&gt;Sure. The current one is the below.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="check1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23413i84DE007004DC01C8/image-size/medium?v=v2&amp;amp;px=400" role="button" title="check1.png" alt="check1.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="check2.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23414i0941DD9288749309/image-size/medium?v=v2&amp;amp;px=400" role="button" title="check2.png" alt="check2.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt; I did uncheck the box, as below, but the "Standard" authentication method still appears at the mobile client  &lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="check3.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23415i9554AEAC5130770D/image-size/medium?v=v2&amp;amp;px=400" role="button" title="check3.png" alt="check3.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 24 Nov 2023 14:06:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198854#M4352</guid>
      <dc:creator>ikokkoris</dc:creator>
      <dc:date>2023-11-24T14:06:53Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198856#M4353</link>
      <description>&lt;P&gt;Here is what I just tested in the lab and worked fine, does NOT show standard in the list anywhere. I dont believe you would need to delete/re-create VPN site just for this, but to test that theory, you can have one user try and see result they get.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind regards,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23416iB219F1B6ABB3F203/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 24 Nov 2023 14:15:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198856#M4353</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-11-24T14:15:28Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198858#M4354</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/74278"&gt;@ikokkoris&lt;/a&gt;&amp;nbsp;Below is what I see.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_2.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/23417i8AA6CBD6549C4C48/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_2.png" alt="Screenshot_2.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 24 Nov 2023 14:16:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198858#M4354</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-11-24T14:16:38Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198901#M4355</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Based on your test the authentication method must be "Defined on user record (legacy)". Unfortunatelly I cannot change the authentication from "Username and password" and I will explain why.&lt;/P&gt;&lt;P&gt;We have connected more than one domains with the firewall. In these domains there are same sam account names (eg &lt;A href="mailto:testuser@domain1," target="_blank"&gt;test@domain1,&lt;/A&gt;&amp;nbsp;&lt;A href="mailto:testuser@domain2" target="_blank"&gt;test@domain2&lt;/A&gt;&amp;nbsp;etc). In this case with authentication method&amp;nbsp; "Defined on user record (legacy)", when a vpn user enters credentials at the Mobile app, search takes place only in one domain.&lt;/P&gt;&lt;P&gt;However, I tested with authentication "Username and Password" and it works only if site is recreated. It this case "Standard" authentication method is disapperared. It is ok for my case.&lt;/P&gt;&lt;P&gt;Thank you very much for the assistance.&lt;/P&gt;</description>
      <pubDate>Sat, 25 Nov 2023 14:09:46 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198901#M4355</guid>
      <dc:creator>ikokkoris</dc:creator>
      <dc:date>2023-11-25T14:09:46Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198902#M4356</link>
      <description>&lt;P&gt;In that case, maybe contact TAC and do remote session to find the best option. Its not really feasible to ask your users to delete/re-create the site. I know in the past, with one large cusotmer we have, couple of my colleagues had to do some modifications in trac.config file and push it via GPO to make things work.&lt;/P&gt;
&lt;P&gt;Best regards,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sat, 25 Nov 2023 14:13:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198902#M4356</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-11-25T14:13:42Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198904#M4357</link>
      <description>&lt;P&gt;Sure. It would be very helpful if the site has not to be recreated.&lt;/P&gt;&lt;P&gt;I will contact TAC and come back with solution.&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Sat, 25 Nov 2023 14:43:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198904#M4357</guid>
      <dc:creator>ikokkoris</dc:creator>
      <dc:date>2023-11-25T14:43:13Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198905#M4358</link>
      <description>&lt;P&gt;I think say if you had dozens of users, not a big deal, but if company has 100s of employees, its not a scalable "solution".&lt;/P&gt;
&lt;P&gt;Let us know what TAC tells you.&lt;/P&gt;
&lt;P&gt;Best regards,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sat, 25 Nov 2023 15:35:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/198905#M4358</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-11-25T15:35:27Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/199001#M4359</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Sure, I will come back with feedback.&lt;/P&gt;&lt;P&gt;I more question please.&lt;/P&gt;&lt;P&gt;Can I restrict remote access vpn access from Capsule VPN for mobile (Android &amp;amp; IOS) based on username that users login?&lt;/P&gt;&lt;P&gt;This is because, when Identity provider authentication is selected, 2MFA is not working in R81.10. This is gonna be solved in take 113(it is not recommended right now).&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Nov 2023 12:37:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/199001#M4359</guid>
      <dc:creator>ikokkoris</dc:creator>
      <dc:date>2023-11-27T12:37:16Z</dc:date>
    </item>
    <item>
      <title>Re: REMOVE LOG IN OPTION FROM REMOTE ACCESS VPN</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/199002#M4360</link>
      <description>&lt;P&gt;Not that I know of. I would wait for jumbo to be recommended.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 27 Nov 2023 12:40:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/REMOVE-LOG-IN-OPTION-FROM-REMOTE-ACCESS-VPN/m-p/199002#M4360</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-11-27T12:40:54Z</dc:date>
    </item>
  </channel>
</rss>

