<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPN Client Authentication in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-Authentication/m-p/160831#M6069</link>
    <description>&lt;P&gt;Machine certificate authentication was added in R80.40.&lt;BR /&gt;Which means, for Maestro, you'll need to upgrade to R81 or above.&lt;/P&gt;
&lt;P&gt;You can create another authentication scheme for users to use.&lt;BR /&gt;See:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_RemoteAccessVPN_AdminGuide/Topics-VPNRG/User-and-Client-Authentication.htm?Highlight=authentication#Multiple_Login_Options_for_R80.xx_Gateways" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_RemoteAccessVPN_AdminGuide/Topics-VPNRG/User-and-Client-Authentication.htm?Highlight=authentication#Multiple_Login_Options_for_R80.xx_Gateways&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 31 Oct 2022 14:02:07 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2022-10-31T14:02:07Z</dc:date>
    <item>
      <title>VPN Client Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-Authentication/m-p/160814#M6068</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hi,&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;We are running our VPN clients gateways on R80.30SP &amp;nbsp;and are being used &amp;nbsp;for remote access ( User VPN &amp;nbsp;) authentication via User certificates at the moment.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;We are exploring to enable the machine certificate authentication for remote access VPN as well. Can you help us on below &amp;nbsp;please.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Also we are running/installed &amp;nbsp;&amp;nbsp;Endpoint clients Version E81.40 Build 986101004 &amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;on the client machines.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;1 ) Can we enable machine certificate authentication for remote access VPN on R80.30 SP version which we are running at the moment. If not what's the compatible version&amp;nbsp; to enable this feature.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;2) If enabled can machine authentication method be enabled individually as a separate parameter to User certificate method &amp;nbsp;or this would be enabled in Global properties impacting &amp;nbsp;our existing user certificate remote VPN&amp;nbsp; authentication method.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 31 Oct 2022 11:45:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-Authentication/m-p/160814#M6068</guid>
      <dc:creator>ESpataro</dc:creator>
      <dc:date>2022-10-31T11:45:25Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-Authentication/m-p/160831#M6069</link>
      <description>&lt;P&gt;Machine certificate authentication was added in R80.40.&lt;BR /&gt;Which means, for Maestro, you'll need to upgrade to R81 or above.&lt;/P&gt;
&lt;P&gt;You can create another authentication scheme for users to use.&lt;BR /&gt;See:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_RemoteAccessVPN_AdminGuide/Topics-VPNRG/User-and-Client-Authentication.htm?Highlight=authentication#Multiple_Login_Options_for_R80.xx_Gateways" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.10/WebAdminGuides/EN/CP_R81.10_RemoteAccessVPN_AdminGuide/Topics-VPNRG/User-and-Client-Authentication.htm?Highlight=authentication#Multiple_Login_Options_for_R80.xx_Gateways&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 31 Oct 2022 14:02:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-Authentication/m-p/160831#M6069</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-10-31T14:02:07Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client Authentication</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-Authentication/m-p/160882#M6070</link>
      <description>&lt;P&gt;Machine certificates are a per gateway enablement, so it would apply to all users. You can enable it in an 'if available' mode rather than making it a requirement. It's configured as an additional step to the existing authentication, so the existing user auth settings would still apply. As Phoneboy says, you'll need to upgrade the gateway version. You should also look at upgrading the VPN client version, as that one is quite old now.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 01 Nov 2022 01:19:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-Authentication/m-p/160882#M6070</guid>
      <dc:creator>emmap</dc:creator>
      <dc:date>2022-11-01T01:19:42Z</dc:date>
    </item>
  </channel>
</rss>

