<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: No connection to a VPN remote access user. in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/No-connection-to-a-VPN-remote-access-user/m-p/194429#M4513</link>
    <description>&lt;P&gt;I'd start with a simple tcpdump from the gateway itself (using destination IP of the system in question).&lt;BR /&gt;If the traffic doesn't leave the gateway, you might try fw monitor using the -F option with the specific IPs (Office Mode IP of user and destination server).&lt;BR /&gt;For example (to see all traffic to 10.100.10.10 on port 443 from Office Mode IP 172.22.0.1): fw monitor -F "172.22.0.1,0,10.100.10.10,443,6" -F "10.100.10.10,443,172.22.0.1,0.6"&lt;BR /&gt;More information on fw monitor:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk30583" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk30583&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;From there, you might need to debug further.&lt;/P&gt;</description>
    <pubDate>Fri, 06 Oct 2023 17:34:50 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2023-10-06T17:34:50Z</dc:date>
    <item>
      <title>No connection to a VPN remote access user.</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/No-connection-to-a-VPN-remote-access-user/m-p/194396#M4512</link>
      <description>&lt;P&gt;Hello, everyone.&lt;/P&gt;
&lt;P&gt;I have a VPN user that connects through Endpoint Security VPN, which successfully logs in to the VPN (Remote Access), but once connected, he has no connectivity to the IP that is declared in the security rule (10.100.10.10).&lt;/P&gt;
&lt;P&gt;In the logs, there are no drops packets from this user, on the contrary, everything is allowed.&lt;/P&gt;
&lt;P&gt;In these RA VPN scenarios, is it convenient to do a traffic "trace", using TCPDUMP? Or is it better to use a FW Monitor?&lt;/P&gt;
&lt;P&gt;Could you share with me a syntax of the FW Monitor command, for this type of scenario?&lt;/P&gt;
&lt;P&gt;Thanks for your comments.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Oct 2023 13:00:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/No-connection-to-a-VPN-remote-access-user/m-p/194396#M4512</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2023-10-06T13:00:17Z</dc:date>
    </item>
    <item>
      <title>Re: No connection to a VPN remote access user.</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/No-connection-to-a-VPN-remote-access-user/m-p/194429#M4513</link>
      <description>&lt;P&gt;I'd start with a simple tcpdump from the gateway itself (using destination IP of the system in question).&lt;BR /&gt;If the traffic doesn't leave the gateway, you might try fw monitor using the -F option with the specific IPs (Office Mode IP of user and destination server).&lt;BR /&gt;For example (to see all traffic to 10.100.10.10 on port 443 from Office Mode IP 172.22.0.1): fw monitor -F "172.22.0.1,0,10.100.10.10,443,6" -F "10.100.10.10,443,172.22.0.1,0.6"&lt;BR /&gt;More information on fw monitor:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk30583" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk30583&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;From there, you might need to debug further.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Oct 2023 17:34:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/No-connection-to-a-VPN-remote-access-user/m-p/194429#M4513</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-10-06T17:34:50Z</dc:date>
    </item>
    <item>
      <title>Re: No connection to a VPN remote access user.</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/No-connection-to-a-VPN-remote-access-user/m-p/194478#M4514</link>
      <description>&lt;P&gt;Maybe just start with the logs check and see what you get. After, run what Phoneboy suggested.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sun, 08 Oct 2023 21:30:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/No-connection-to-a-VPN-remote-access-user/m-p/194478#M4514</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-10-08T21:30:11Z</dc:date>
    </item>
  </channel>
</rss>

