<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Remote VPN Solution in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165459#M5805</link>
    <description>&lt;P&gt;To clarify these are only the Gateway side license requirements.&lt;/P&gt;
&lt;P&gt;It would be remiss of us not to mention (again) that specific clients require seat licenses applied to the Management server e.g. CPEP-ACCESS-XX&lt;/P&gt;</description>
    <pubDate>Sat, 17 Dec 2022 14:19:42 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2022-12-17T14:19:42Z</dc:date>
    <item>
      <title>Remote VPN Solution</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165340#M5796</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hello, Team,&lt;BR /&gt;&lt;BR /&gt;I hope you can help me to clarify the doubt.&lt;BR /&gt;&lt;BR /&gt;To work with the Remote Access VPN solution, in your experience, is it better to work it using the Mobil Access blade? Because I know that you can also have this solution, activating only the IPsec VPN Blade. So, could we say that the decision of which blade to work with depends on the Firewall administrator?&lt;BR /&gt;&lt;BR /&gt;I have an equipment in Standalone deployment, which has 2 active blades, both the IPsec VPN blade and the Mobile Access blade, but it is difficult for me to "know" which blade is the one that is "working" for the connection of the remote users of the VPN.&lt;BR /&gt;&lt;BR /&gt;Thank you for your support.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Dec 2022 00:42:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165340#M5796</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2022-12-16T00:42:54Z</dc:date>
    </item>
    <item>
      <title>Re: Remote VPN Solution</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165342#M5797</link>
      <description>&lt;P&gt;The license/blade requirements depend on the type of client to be used, please refer:&lt;/P&gt;
&lt;P&gt;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk67820&amp;amp;partition=Basic&amp;amp;product=Endpoint" target="_blank"&gt;sk67820: Check Point&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Remote&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Access&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Solutions&lt;/STRONG&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;- Gateway-Based&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;Access&lt;/STRONG&gt;&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Dec 2022 01:26:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165342#M5797</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-12-16T01:26:47Z</dc:date>
    </item>
    <item>
      <title>Re: Remote VPN Solution</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165418#M5798</link>
      <description>&lt;P&gt;Remote Access VPN can be “served” either by IPsec VPN or Mobile Access Blade being enabled.&lt;BR /&gt;The logging is somewhat ambiguous at times because they’re using the same infrastructure underneath for this function.&lt;BR /&gt;My opinion:&amp;nbsp;unless you need the web-based portal of Mobile Access Blade, which would include the use of SNX portal, use IPsec VPN.&lt;/P&gt;</description>
      <pubDate>Fri, 16 Dec 2022 14:24:19 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165418#M5798</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-12-16T14:24:19Z</dc:date>
    </item>
    <item>
      <title>Re: Remote VPN Solution</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165419#M5799</link>
      <description>&lt;P&gt;Thanks for the feedback.&lt;/P&gt;&lt;P&gt;As far as I remember, and according to the SK that was shared with me in this forum, using for example the "Endpoint Security VPN" agent, only works with the IPsec VPN blade, am I correct?&lt;/P&gt;&lt;P&gt;I understand that when you use this agent, the "negotiation" by default in Checkpoint is using the certificate that by default is in the "community" of "RemoteAccess" (all this, to achieve to lift the tunnel), to avoid that the connections of the users "are complex" for them.&lt;BR /&gt;Is my point of view correct?&lt;/P&gt;&lt;P&gt;It seems that the environment I have, use both blades, because according to what I have inquired with the client, many users also use the Capsule VPN on their phones and mobiles (Android), and according to the SK, I understand that this application "depends" on the Mobile Access blade.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Dec 2022 14:39:50 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165419#M5799</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2022-12-16T14:39:50Z</dc:date>
    </item>
    <item>
      <title>Re: Remote VPN Solution</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165420#M5800</link>
      <description>&lt;P&gt;In my experience, most people would stick with ipsec VPN blade, and use mobile access for their mobile users (you connect with app from your smart phone).&lt;/P&gt;</description>
      <pubDate>Fri, 16 Dec 2022 14:41:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165420#M5800</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-12-16T14:41:01Z</dc:date>
    </item>
    <item>
      <title>Re: Remote VPN Solution</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165440#M5801</link>
      <description>&lt;P&gt;There may be some minor differences in how you configure Remote Access when doing MAB “exclusively” (without IPsec VPN enabled), but Endpoint Security VPN should work with it.&lt;BR /&gt;You are correct that the Capsule VPN clients require MAB, this is documented here:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk67820&amp;amp;partition=Basic&amp;amp;product=Endpoint" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk67820&amp;amp;partition=Basic&amp;amp;product=Endpoint&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Dec 2022 15:59:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165440#M5801</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-12-16T15:59:58Z</dc:date>
    </item>
    <item>
      <title>Re: Remote VPN Solution</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165456#M5802</link>
      <description>&lt;P&gt;Buddy.&lt;/P&gt;&lt;P&gt;So in your experience, the "Endpoint Security VPN" agent can work, if I only have the Mobile Access blade active?&lt;/P&gt;&lt;P&gt;Greetings.&lt;/P&gt;</description>
      <pubDate>Sat, 17 Dec 2022 03:00:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165456#M5802</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2022-12-17T03:00:23Z</dc:date>
    </item>
    <item>
      <title>Re: Remote VPN Solution</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165457#M5803</link>
      <description>&lt;P&gt;You simply need VPN blade enabled to run base endpoint vpn client.&lt;/P&gt;</description>
      <pubDate>Sat, 17 Dec 2022 03:02:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165457#M5803</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-12-17T03:02:41Z</dc:date>
    </item>
    <item>
      <title>Re: Remote VPN Solution</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165458#M5804</link>
      <description>&lt;P&gt;If you want to control the Firewall and Endpoint Compliance features of Endpoint Security VPN, that requires IPsec VPN.&lt;BR /&gt;Otherwise, Mobile Access Blade can be used.&lt;/P&gt;</description>
      <pubDate>Sat, 17 Dec 2022 03:32:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165458#M5804</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-12-17T03:32:12Z</dc:date>
    </item>
    <item>
      <title>Re: Remote VPN Solution</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165459#M5805</link>
      <description>&lt;P&gt;To clarify these are only the Gateway side license requirements.&lt;/P&gt;
&lt;P&gt;It would be remiss of us not to mention (again) that specific clients require seat licenses applied to the Management server e.g. CPEP-ACCESS-XX&lt;/P&gt;</description>
      <pubDate>Sat, 17 Dec 2022 14:19:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Remote-VPN-Solution/m-p/165459#M5805</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-12-17T14:19:42Z</dc:date>
    </item>
  </channel>
</rss>

