<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to enable Secure Client Verification? in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132758#M7809</link>
    <description>&lt;P&gt;&lt;BR /&gt;Got it &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I think that I can't see the screenshot (where to define what resources are allowed to remediation purpose). Do you have it anywhere else? Restrict to&amp;nbsp; only one server or maybe none could be an solution...&lt;BR /&gt;&lt;BR /&gt;Mine is configured as &lt;EM&gt;:allow_non_scv_clients (false)&lt;/EM&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 28 Oct 2021 03:56:56 GMT</pubDate>
    <dc:creator>afranklin</dc:creator>
    <dc:date>2021-10-28T03:56:56Z</dc:date>
    <item>
      <title>How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/131860#M7801</link>
      <description>&lt;P&gt;I'm using the checkmates to learn, my interest is in the VPN service that I was able to replicate. I used with an workstation running the last Check Point Endpoint security client and it connects fine. I want to test &lt;STRONG&gt;secure client verification&lt;/STRONG&gt; to validate for example if my antivirus is running and my machine is on my domain. I saw compliance options inside &lt;EM&gt;Mobile Web Access&lt;/EM&gt;, at the rules dashboard there is a link to open a new dashboard that allows me to create a new rule or edit the 3 defaults (high, medium and low), however it never runs on my client.&lt;/P&gt;&lt;P&gt;I searched and my guess is that it only works with mobile vpn client and not Check Point Endpoint Security (that if I understood properly is stronger -so I prefer use it to test). I found this article (&lt;A href="https://namitguy.blogspot.com/2020/04/implementing-secure-client-verification.html" target="_blank" rel="nofollow noopener noreferrer"&gt;https://namitguy.blogspot.com/2020/04/implementing-secure-client-verification.html)&amp;nbsp;&lt;/A&gt;suggesting that I have to enable a special feature at Remote access -&amp;gt; Secure Configuration Verification. However I don't see it on the CheckMate labs. Maybe is it a feature on old version? Doesn't exist anymore?&lt;BR /&gt;&lt;BR /&gt;Also, it says to enable IPSEC and Policy Server&amp;nbsp; feature, and than a policy named desktop security. All fine, except that the rules at desktop security appears to be related&amp;nbsp; with inbound and outbound rules and not process checks for example. What am I missing?&lt;BR /&gt;&lt;BR /&gt;Also, once it's enable the&amp;nbsp; only way to create the rules is editing the file mentioned with vi (command-line)?&lt;BR /&gt;&lt;BR /&gt;The official pdf looks more or less the same &lt;A href="https://community.checkpoint.com/t5/Remote-Access-VPN/White-Paper-Check-Point-Compliance-Checking-with-Secure/m-p/57123#M1737" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/Remote-Access-VPN/White-Paper-Check-Point-Compliance-Checking-wi...&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;I could not find, is there any command (command line) to verify if secure client verification is enabled and my checkpoint is using the current local.csv file?&lt;/P&gt;&lt;P&gt;All help is very welcome!&lt;/P&gt;</description>
      <pubDate>Fri, 15 Oct 2021 23:15:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/131860#M7801</guid>
      <dc:creator>afranklin</dc:creator>
      <dc:date>2021-10-15T23:15:26Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/131861#M7802</link>
      <description>&lt;P&gt;SCV is definitely an older feature, however customers still use it both with Check Point Mobile and Endpoint Security VPN.&lt;BR /&gt;SCV is also limited to Windows clients currently.&lt;/P&gt;
&lt;P&gt;The Desktop Policy is actually firewall rules for the client, yes.&lt;BR /&gt;And yes, it is required to utilize SCV.&lt;BR /&gt;See:&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk147416&amp;amp;partition=Advanced&amp;amp;product=IPSec" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk147416&amp;amp;partition=Advanced&amp;amp;product=IPSec&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 16 Oct 2021 00:52:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/131861#M7802</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-10-16T00:52:15Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132403#M7803</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Gotcha &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;. Is there a better way to enforce such king of checks since it's an old feature?&lt;/P&gt;&lt;P&gt;Since SCV only works on Windows, do you know how is possible to prevent any computer that is not Windows (such as Mac) to log-in on my checkpoint vpn?&lt;/P&gt;</description>
      <pubDate>Thu, 21 Oct 2021 18:41:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132403#M7803</guid>
      <dc:creator>afranklin</dc:creator>
      <dc:date>2021-10-21T18:41:42Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132410#M7804</link>
      <description>&lt;P&gt;The SCV check would fail on anything that can't run SCV and you can configure (in Global Properties, I believe) whether that would be allowed or not.&lt;BR /&gt;The other way to do it would be Endpoint Compliance, which requires Endpoint licensing (or legacy ACCESS licenses).&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 21 Oct 2021 22:21:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132410#M7804</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-10-21T22:21:00Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132752#M7805</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;thank you for answer.&lt;BR /&gt;&lt;BR /&gt;Before asking questions I tried to configure SCV to fail on anything that can't run SCV, but I failed miserable. Can you please give me more details?&lt;BR /&gt;&lt;BR /&gt;Below is my scv config to test&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2021-10-27 at 22.46.46.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14081i27295A035124C4CA/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screen Shot 2021-10-27 at 22.46.46.png" alt="Screen Shot 2021-10-27 at 22.46.46.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;and my global properties&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2021-10-27 at 22.49.16.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14082i5124EFB428C7643D/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screen Shot 2021-10-27 at 22.49.16.png" alt="Screen Shot 2021-10-27 at 22.49.16.png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2021-10-27 at 22.49.24.png" style="width: 379px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14083i5C69F5EEA8ADBDDE/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screen Shot 2021-10-27 at 22.49.24.png" alt="Screen Shot 2021-10-27 at 22.49.24.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;my windows fail because it's not compliant&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2021-10-27 at 22.52.23.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14084i04023C78814EAD84/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screen Shot 2021-10-27 at 22.52.23.png" alt="Screen Shot 2021-10-27 at 22.52.23.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;but my mac always work, no matter what i do it connect&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screen Shot 2021-10-27 at 22.53.51.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/14085i44BF0F1A56065D53/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screen Shot 2021-10-27 at 22.53.51.png" alt="Screen Shot 2021-10-27 at 22.53.51.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Oct 2021 02:47:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132752#M7805</guid>
      <dc:creator>afranklin</dc:creator>
      <dc:date>2021-10-28T02:47:13Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132755#M7806</link>
      <description>&lt;P&gt;The Mac is showing compliant because it's using Endpoint Compliance and not SCV.&lt;BR /&gt;Can the Mac actually connect to the relevant resources?&lt;BR /&gt;If so, I recommend a TAC case for further troubleshooting.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Oct 2021 02:52:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132755#M7806</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-10-28T02:52:11Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132756#M7807</link>
      <description>&lt;P&gt;thanks &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there&amp;nbsp; a way to ignore endpoint compliance and force that any client that doesn't support SCV will not log on my vpn?&lt;BR /&gt;&lt;BR /&gt;I tried to create a endpoint compliance to test (the default high) and there is no AV on this&amp;nbsp; mac but it still connects fine.&lt;/P&gt;&lt;P&gt;Yes, the mac is able to access my internal file share via this vpn&lt;BR /&gt;&lt;BR /&gt;Sorry for ignorance, what is a TAC case? I'm not a customer...I use the lab to learn Checkpoint amazing tools&lt;BR /&gt;&lt;BR /&gt;An alternative could be to allow only computers (Windows) to log on my vpn and have SCV pass, all other clients&amp;nbsp; (Linux, Mac) I want to deny directly. Is it possible?&lt;/P&gt;</description>
      <pubDate>Thu, 28 Oct 2021 03:04:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132756#M7807</guid>
      <dc:creator>afranklin</dc:creator>
      <dc:date>2021-10-28T03:04:55Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132757#M7808</link>
      <description>&lt;P&gt;Even a non-compliant computer is allowed to connect to the VPN.&lt;BR /&gt;However, they would only be permitted access to the specific items allowed in the screenshot (i.e. for remediation purposes).&lt;BR /&gt;All make sure local.scv is configured to not allow non-SCV clients to connect.&lt;BR /&gt;Basically the opposite of: &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk123813&amp;amp;partition=Advanced&amp;amp;product=Endpoint" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk123813&amp;amp;partition=Advanced&amp;amp;product=Endpoint&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Yes, TAC requires having a support agreement.&lt;/P&gt;</description>
      <pubDate>Thu, 28 Oct 2021 03:15:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132757#M7808</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-10-28T03:15:28Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132758#M7809</link>
      <description>&lt;P&gt;&lt;BR /&gt;Got it &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I think that I can't see the screenshot (where to define what resources are allowed to remediation purpose). Do you have it anywhere else? Restrict to&amp;nbsp; only one server or maybe none could be an solution...&lt;BR /&gt;&lt;BR /&gt;Mine is configured as &lt;EM&gt;:allow_non_scv_clients (false)&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Oct 2021 03:56:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132758#M7809</guid>
      <dc:creator>afranklin</dc:creator>
      <dc:date>2021-10-28T03:56:56Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132759#M7810</link>
      <description>&lt;P&gt;It's actually in the screenshots you've already provided (Secure Configuration Verification Exceptions)&lt;/P&gt;</description>
      <pubDate>Thu, 28 Oct 2021 04:02:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132759#M7810</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-10-28T04:02:37Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132778#M7811</link>
      <description>&lt;P&gt;Hey, did you already tried to do?&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;:disconnect_when_not_verified (true)&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;:block_connections_on_unverified (true)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;as well as&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;:allow_non_scv_clients (false)&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;In the global Properties i didnt have to anything in mine.&lt;/P&gt;&lt;P&gt;This is will make if you are not compliant it will block the connection, even tho the VPN can Log in, after 20 seconds you will be dropped&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Best Regards,&lt;BR /&gt;Perdro Filipe&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 28 Oct 2021 08:54:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132778#M7811</guid>
      <dc:creator>pfilipe</dc:creator>
      <dc:date>2021-10-28T08:54:17Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132894#M7812</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;. I played a&amp;nbsp; lot with that screen and&amp;nbsp; no matter what I do, Mac clients are allowed to connect at VPN and reach&amp;nbsp; any internal server. &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;Any guess?&lt;/P&gt;</description>
      <pubDate>Sat, 30 Oct 2021 01:04:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132894#M7812</guid>
      <dc:creator>afranklin</dc:creator>
      <dc:date>2021-10-30T01:04:15Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132895#M7813</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/59755"&gt;@pfilipe&lt;/a&gt;,&lt;BR /&gt;&lt;BR /&gt;I&amp;nbsp; tried it&amp;nbsp; and many combinations, just to make sure I tried again now...&lt;BR /&gt;&lt;BR /&gt;:SCVGlobalParams (&lt;BR /&gt;:enable_status_notifications (false)&lt;BR /&gt;:status_notifications_timeout (10)&lt;BR /&gt;:disconnect_when_not_verified (true)&lt;BR /&gt;:block_connections_on_unverified (true)&lt;BR /&gt;:scv_policy_timeout_hours (168)&lt;BR /&gt;:enforce_ip_forwarding (false)&lt;BR /&gt;:not_verified_script ("")&lt;BR /&gt;:not_verified_script_run_show (false)&lt;BR /&gt;:not_verified_script_run_admin (false)&lt;BR /&gt;:not_verified_script_run_always (false)&lt;BR /&gt;:allow_non_scv_clients (false)&lt;BR /&gt;:skip_firewall_enforcement_check (false)&lt;BR /&gt;&lt;BR /&gt;I connect on my Windows and it works as expected. On Mac with last endpoint security client no matter what I do, I keep connected and&amp;nbsp; can reach any internal server &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;Have you tried it with the last mac client?&lt;BR /&gt;&lt;BR /&gt;Do you use CheckMate Labs? I'm asking because I'm using it and I'm&amp;nbsp; not sure if there is anything different there.&lt;BR /&gt;&lt;BR /&gt;In theory I see that people claim that it works, but I'm ashamed that I can't make it work.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.SearchResultMainAction&amp;amp;eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk123813" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?action=portlets.SearchResultMainAction&amp;amp;eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk123813&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 30 Oct 2021 01:08:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132895#M7813</guid>
      <dc:creator>afranklin</dc:creator>
      <dc:date>2021-10-30T01:08:35Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132897#M7814</link>
      <description>&lt;P&gt;What version/JHF of gateway is involved?&lt;/P&gt;</description>
      <pubDate>Sat, 30 Oct 2021 05:21:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/132897#M7814</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-10-30T05:21:06Z</dc:date>
    </item>
    <item>
      <title>Re: How to enable Secure Client Verification?</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/133099#M7815</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/69502"&gt;@afranklin&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;By "&lt;SPAN&gt;&amp;nbsp;it works as expected&lt;/SPAN&gt;" you mean if Windows client is not compliant it is not able to access encryption domain and when compliance status is changed access is restored?&lt;/P&gt;
&lt;P&gt;Also in the Access Control -&amp;gt; Policy do you have "Remote Access" community configured in VPN&amp;nbsp; column for the rules allowing&amp;nbsp; traffic from RA users to encryption domain?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Nov 2021 06:54:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/How-to-enable-Secure-Client-Verification/m-p/133099#M7815</guid>
      <dc:creator>Alex_Sazonov</dc:creator>
      <dc:date>2021-11-03T06:54:33Z</dc:date>
    </item>
  </channel>
</rss>

