<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Query related to blocking the internet when capsule users are connected to VPN from mobile devic in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147306#M6876</link>
    <description>&lt;P&gt;Of course&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="markedContent"&gt;&lt;SPAN&gt;the Route All Traffic feature will increase GW load ! As this feature only works while VPN is connected it also will only do TP for client traffic during that time. This was your customers request and he may have good reasons for it - i would prefer not to use&amp;nbsp;the Route All Traffic feature, but also install the Harmony Mobile protect app on mobile devices. This gives safety anytime !&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 28 Apr 2022 09:26:16 GMT</pubDate>
    <dc:creator>G_W_Albrecht</dc:creator>
    <dc:date>2022-04-28T09:26:16Z</dc:date>
    <item>
      <title>Query related to blocking the internet when capsule users are connected to VPN from mobile devices v</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147124#M6873</link>
      <description>&lt;DIV&gt;&lt;BR /&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV data-tid="messageBodyContainer"&gt;
&lt;DIV data-tid="messageBodyContent"&gt;
&lt;DIV&gt;
&lt;DIV&gt;
&lt;DIV&gt;Hi Team,&lt;/DIV&gt;
&lt;DIV&gt;A customer has a requirement, where they wanted to block the internet for Remote access VPN users when they are connected, to achieve that I have configured desktop policy and their requirement is fulfilled but now they have the same requirement for all mobile users using the capsule.&lt;/DIV&gt;
&lt;DIV&gt;Is it possible to do so, or do we have any alternate option to fulfil this requirement?&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;DIV&gt;
&lt;DIV id="tinyMceEditornaveda_0" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV id="tinyMceEditornaveda_1" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV id="tinyMceEditornaveda_2" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV id="tinyMceEditornaveda_3" class="mceNonEditable lia-copypaste-placeholder"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;/DIV&gt;</description>
      <pubDate>Wed, 27 Apr 2022 05:48:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147124#M6873</guid>
      <dc:creator>naveda</dc:creator>
      <dc:date>2022-04-27T05:48:12Z</dc:date>
    </item>
    <item>
      <title>Re: Query related to blocking the internet when capsule users are connected to VPN from mobile devic</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147151#M6874</link>
      <description>&lt;P&gt;This is possible using&amp;nbsp;&lt;SPAN class="markedContent"&gt;&lt;SPAN&gt;the Route All Traffic feature:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://dl3.checkpoint.com/paid/5e/5ee546112df339d6bef37872e26c2434/CP_CapsuleVPNClient_AdminGuide.pdf?HashKey=1651059754_696925a4b709a8afad39aa53f3ba4ae4&amp;amp;xtn=.pdf" target="_blank"&gt;https://dl3.checkpoint.com/paid/5e/5ee546112df339d6bef37872e26c2434/CP_CapsuleVPNClient_AdminGuide.pdf?HashKey=1651059754_696925a4b709a8afad39aa53f3ba4ae4&amp;amp;xtn=.pdf&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 27 Apr 2022 09:43:53 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147151#M6874</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-04-27T09:43:53Z</dc:date>
    </item>
    <item>
      <title>Re: Query related to blocking the internet when capsule users are connected to VPN from mobile devic</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147301#M6875</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/34711"&gt;@GW&lt;/a&gt;_W_Albrecht, thank you for your response. I have checked the guide, it just shows the way to route all traffic to the gateway. I also want to know if I configure route all traffic to the gateway, wouldn't this way increase the overhead on the gateway, when all traffic from the client will be passed through the gateway.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If the customer will agree to do that, after enabling the feature, we can restrict the traffic in policy right?&lt;/P&gt;
&lt;P&gt;Please clarify on this. Thanks!&lt;/P&gt;</description>
      <pubDate>Thu, 28 Apr 2022 08:19:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147301#M6875</guid>
      <dc:creator>naveda</dc:creator>
      <dc:date>2022-04-28T08:19:48Z</dc:date>
    </item>
    <item>
      <title>Re: Query related to blocking the internet when capsule users are connected to VPN from mobile devic</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147306#M6876</link>
      <description>&lt;P&gt;Of course&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="markedContent"&gt;&lt;SPAN&gt;the Route All Traffic feature will increase GW load ! As this feature only works while VPN is connected it also will only do TP for client traffic during that time. This was your customers request and he may have good reasons for it - i would prefer not to use&amp;nbsp;the Route All Traffic feature, but also install the Harmony Mobile protect app on mobile devices. This gives safety anytime !&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Apr 2022 09:26:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147306#M6876</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-04-28T09:26:16Z</dc:date>
    </item>
    <item>
      <title>Re: Query related to blocking the internet when capsule users are connected to VPN from mobile devic</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147325#M6877</link>
      <description>&lt;P&gt;By that means, with harmony mobile, we can achieve the requirement to restrict users to access the internet when VPN is connected or it is just to prevent malicious traffic to route through the gateway.&lt;/P&gt;
&lt;P&gt;Also, I want to know if we can suggest them to go with any 3rd party MDM or achieve that requirement.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please confirm one more thing, if customer agrees to enable route all traffic through gateway feature, we can restrict particular user traffic by access policy but blocking destination as internet, right?&lt;/P&gt;</description>
      <pubDate>Thu, 28 Apr 2022 12:55:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147325#M6877</guid>
      <dc:creator>naveda</dc:creator>
      <dc:date>2022-04-28T12:55:18Z</dc:date>
    </item>
    <item>
      <title>Re: Query related to blocking the internet when capsule users are connected to VPN from mobile devic</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147326#M6878</link>
      <description>&lt;P&gt;Harmony Mobile doesn't filter all Internet traffic, but it does block certain malicious traffic (phishing/bots).&lt;BR /&gt;And no, an MDM can't do that alone, but an MDM can be used to place restrictions on the device when it falls out of compliance and/or isn't secure according to Harmony Mobile.&lt;/P&gt;
&lt;P&gt;Whether or not you "block" Internet when using Route All Traffic is a function of the specific access policy.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Apr 2022 12:59:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147326#M6878</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2022-04-28T12:59:58Z</dc:date>
    </item>
    <item>
      <title>Re: Query related to blocking the internet when capsule users are connected to VPN from mobile devic</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147332#M6879</link>
      <description>&lt;P&gt;Thanks&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21294"&gt;@G_W_Albrecht&lt;/a&gt;&amp;nbsp;and&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp; I will try to do this in my lab and propose this option as route all traffic to the gateway to achieve their requirement.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Apr 2022 13:15:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147332#M6879</guid>
      <dc:creator>naveda</dc:creator>
      <dc:date>2022-04-28T13:15:18Z</dc:date>
    </item>
    <item>
      <title>Re: Query related to blocking the internet when capsule users are connected to VPN from mobile devic</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147357#M6880</link>
      <description>&lt;P&gt;No, as&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp; wrote,&amp;nbsp;&lt;SPAN&gt;harmony mobile protects mobile devices all the time. Complete internet traffic by connected clients&amp;nbsp;using&amp;nbsp;&lt;SPAN class="markedContent"&gt;the Route All Traffic feature&amp;nbsp;&lt;/SPAN&gt;can be restricted and undergo TP on GW. Or disabled completely, of course...&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Apr 2022 15:07:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Query-related-to-blocking-the-internet-when-capsule-users-are/m-p/147357#M6880</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-04-28T15:07:20Z</dc:date>
    </item>
  </channel>
</rss>

