<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SSL Network Extender - client upgrade upon connection in global properties in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168288#M5698</link>
    <description>&lt;P&gt;Windows 11 isn't supported yet per: &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk175324" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk175324&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 19 Jan 2023 00:11:31 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2023-01-19T00:11:31Z</dc:date>
    <item>
      <title>SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168280#M5692</link>
      <description>&lt;P&gt;So, I want clients to upgrade upon connection from one gateway, yet not others...&amp;nbsp; Alas, this is a global property...&lt;/P&gt;
&lt;P&gt;Is there a way to leave this remote access global property as Do not upgrade, yet initiate the upgrade on one specific gateway?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jan 2023 21:48:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168280#M5692</guid>
      <dc:creator>Daniel_Kavan</dc:creator>
      <dc:date>2023-01-18T21:48:53Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168281#M5693</link>
      <description>&lt;P&gt;Not that I know of, but will look into it. Let me see if R81.20 has different options.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jan 2023 22:19:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168281#M5693</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-01-18T22:19:16Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168283#M5694</link>
      <description>&lt;P&gt;What triggers the upgrade ultimately for SNX is this file:&amp;nbsp;$CVPNDIR/htdocs/SNX/CSHELL/snx_ver.txt&lt;BR /&gt;I presume if this file is modified on the other gateways to the lower version, then the upgrade won't be triggered.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jan 2023 23:27:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168283#M5694</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-01-18T23:27:23Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168285#M5695</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;Somewhat unrelated snx extender question...any idea what would cause to show java unavailable when trying to connect via ssl extender? I tried R81.10, R81.20, 3 different machines, even added fw ip to excluded list in java panel, no luck. Java unavailable shows up when I enter creds to connect (shows up after about 30 seconds).&lt;/P&gt;
&lt;P&gt;Also tried 4 different browsers, same problem.&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jan 2023 23:49:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168285#M5695</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-01-18T23:49:51Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168286#M5696</link>
      <description>&lt;P&gt;I assume you have the appropriate JDK installed, correct?&lt;BR /&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk113410" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk113410&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jan 2023 23:58:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168286#M5696</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-01-18T23:58:42Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168287#M5697</link>
      <description>&lt;P&gt;I do, BUT...I just realized that sk does not have windows 11 listed, maybe thats why its failing...as I tested only on that version. Let me see if windows 10 works.&lt;/P&gt;</description>
      <pubDate>Thu, 19 Jan 2023 00:03:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168287#M5697</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-01-19T00:03:41Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168288#M5698</link>
      <description>&lt;P&gt;Windows 11 isn't supported yet per: &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk175324" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk175324&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 19 Jan 2023 00:11:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168288#M5698</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-01-19T00:11:31Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168293#M5699</link>
      <description>&lt;P&gt;No luck even on windows 10. I even downloaded latest JDK (version 19) and tried manual msi install from extender log on page, but when I try it from c/program files(x86)/ssl extender folder, nothing really happens.&lt;/P&gt;</description>
      <pubDate>Thu, 19 Jan 2023 00:52:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168293#M5699</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-01-19T00:52:38Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168378#M5700</link>
      <description>&lt;P&gt;Is there a link or page that shows the most recent version of snx available?&amp;nbsp; Not sk104379, but a web page on cp.com that shows it to confirm what's in&amp;nbsp;&lt;EM&gt;cat $CVPNDIR/htdocs/SNX/CSHELL/snx_ver.txt&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt; cat /opt/CPcvpn-R81.10/htdocs/SNX/CSHELL/snx_ver.txt&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;&lt;SPAN&gt;sk168353 show the portal agent, not snx though&lt;/SPAN&gt;&lt;BR /&gt;800008304&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 19 Jan 2023 15:21:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168378#M5700</guid>
      <dc:creator>Daniel_Kavan</dc:creator>
      <dc:date>2023-01-19T15:21:27Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168398#M5701</link>
      <description>&lt;P&gt;What's in that file will depend entirely on the version of the gateway in question since we don't generally&amp;nbsp;distribute SNX separate of the gateway itself or a hotfix (JHF or otherwise).&lt;BR /&gt;For example, I see some SNX-specific fixes in the most recent JHF (Take 82) for R81.10.&lt;BR /&gt;See &lt;A href="https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.10/R81.10/R81.10-List-of-all-Resolved-Issues.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.10/R81.10/R81.10-List-of-all-Resolved-Issues.htm&lt;/A&gt;.&lt;BR /&gt;Whether these are gateway specific fixes, client specific fixes, or both, I can't say off-hand.&lt;/P&gt;
&lt;P&gt;In any case, I checked my R81.20 installation and see&amp;nbsp;the same version that you specified (800008304).&lt;BR /&gt;Which suggests it's a fairly recent version (if not the most recent).&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 19 Jan 2023 16:15:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168398#M5701</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-01-19T16:15:53Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168531#M5702</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/599"&gt;@Daniel_Kavan&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;80008304 is the latest version of SNX. It is available since&amp;nbsp;R81.10 Jumbo take 55.&lt;/P&gt;
&lt;P&gt;SNX itself doesn't require Java runtime. It is needed for deployment and control from Mobile Access Portal page. See&amp;nbsp;sk113410 for more details. Pay attention to supported Java versions and editions.&lt;/P&gt;
&lt;P&gt;If you see "&lt;SPAN&gt;Java unavailable&lt;/SPAN&gt;" message, it means that Mobile Access Portal Agent can't detect installed Java. Check output of following command in CMD:&lt;/P&gt;
&lt;P&gt;java -version&lt;/P&gt;
&lt;P&gt;If you see Java version. try to re-install "Check Point Mobile Access Portal Agent". If it doesn't help - better open ticket with support.&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jan 2023 13:36:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168531#M5702</guid>
      <dc:creator>AndreiR</dc:creator>
      <dc:date>2023-01-20T13:36:06Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168534#M5703</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/5692"&gt;@AndreiR&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;It was actually me that had that issue. Question...I know before you could use ssl extender without needing to have mobile access enabled, is that still the case? I ask, because I get same problem regardless if MA is enabled or not.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jan 2023 13:58:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168534#M5703</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-01-20T13:58:14Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168553#M5704</link>
      <description>&lt;P&gt;I actually disabled/re-enabled MA blade and now works fine. Tx a lot!&lt;/P&gt;
&lt;P&gt;Cheers,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jan 2023 14:54:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168553#M5704</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-01-20T14:54:37Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168554#M5705</link>
      <description>&lt;P&gt;SNX doesn't require MAB to be enabled to use...if they already have SNX installed.&lt;BR /&gt;However, the "legacy" SNX portal still uses the legacy deployment method that modern browsers don't support.&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jan 2023 14:55:09 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168554#M5705</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-01-20T14:55:09Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168555#M5706</link>
      <description>&lt;P&gt;Hey &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;...what do you mean exactly by "if they already have SNX installed"?&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jan 2023 14:56:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168555#M5706</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-01-20T14:56:59Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168572#M5707</link>
      <description>&lt;P&gt;Spoke with one of my colleagues and asked him about it and he said if anything, I may need to downgrade Java to get this to work, so will try that and update : - ). With MA blade on, all works just fine.&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jan 2023 17:29:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168572#M5707</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-01-20T17:29:00Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168583#M5708</link>
      <description>&lt;P&gt;Just to verify for myself, installed older java version and that worked fine, no MAB enabled.&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jan 2023 18:42:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168583#M5708</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-01-20T18:42:01Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168603#M5709</link>
      <description>&lt;P&gt;SNX is typically deployed through a web portal and requires Java to do so.&lt;BR /&gt;There are two portals where this can be done:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Mobile Access Blade&lt;/LI&gt;
&lt;LI&gt;Legacy SNX Portal (doesn't require MAB to be enabled)&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Mobile Access Blade (as of R80.40) has been updated to allow the Java-based Deployment Agent to deploy SNX on modern web browsers.&lt;BR /&gt;The Legacy SNX Portal leverages the legacy NPAPI method, which isn't supported on any current web browser.&lt;/P&gt;
&lt;P&gt;It is possible to deploy SNX "out of band" if you're not using Mobile Access Blade (i.e. by installing the relevant CAB file).&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jan 2023 20:36:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168603#M5709</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-01-20T20:36:15Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168608#M5710</link>
      <description>&lt;P&gt;I simply ended up downgrading java version and bam, all worked like a charm : - )&lt;/P&gt;</description>
      <pubDate>Fri, 20 Jan 2023 21:54:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168608#M5710</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-01-20T21:54:41Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Network Extender - client upgrade upon connection in global properties</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168679#M5711</link>
      <description>&lt;P&gt;Would you consider just logging into the Mobile access portal (sslvpn) and just using web applications to still be a VPN (sslvpn?) or would you say it's only considered a VPN once you connect with snx and native applications?&amp;nbsp; Or are they both considered VPNs whether you just login to the portal and use a web application or connect with SNX?&amp;nbsp; Or is one considered sslvpn and the other just a reverse proxy?&lt;/P&gt;</description>
      <pubDate>Sun, 22 Jan 2023 20:14:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/SSL-Network-Extender-client-upgrade-upon-connection-in-global/m-p/168679#M5711</guid>
      <dc:creator>Daniel_Kavan</dc:creator>
      <dc:date>2023-01-22T20:14:02Z</dc:date>
    </item>
  </channel>
</rss>

