<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Block authentication method change in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-authentication-method-change/m-p/107847#M9320</link>
    <description>&lt;P&gt;Hi guys,&lt;/P&gt;&lt;P&gt;we need to block the authentication method change on the client side.&lt;/P&gt;&lt;P&gt;Is it possible? The problem is related to Machine Authentication. We had to create a "Standard 2" login that is without Dynamic ID to make it works. But if someone found this "tricks" will bypass simple username+password+dynamicid solution.&lt;/P&gt;&lt;P&gt;The major problem is that we need to give VPN access also to 3rd party users, so we need the DynamicID and cannot do MA for 3rd party&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
    <pubDate>Thu, 14 Jan 2021 15:51:26 GMT</pubDate>
    <dc:creator>stich86</dc:creator>
    <dc:date>2021-01-14T15:51:26Z</dc:date>
    <item>
      <title>Block authentication method change</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-authentication-method-change/m-p/107847#M9320</link>
      <description>&lt;P&gt;Hi guys,&lt;/P&gt;&lt;P&gt;we need to block the authentication method change on the client side.&lt;/P&gt;&lt;P&gt;Is it possible? The problem is related to Machine Authentication. We had to create a "Standard 2" login that is without Dynamic ID to make it works. But if someone found this "tricks" will bypass simple username+password+dynamicid solution.&lt;/P&gt;&lt;P&gt;The major problem is that we need to give VPN access also to 3rd party users, so we need the DynamicID and cannot do MA for 3rd party&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Thu, 14 Jan 2021 15:51:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-authentication-method-change/m-p/107847#M9320</guid>
      <dc:creator>stich86</dc:creator>
      <dc:date>2021-01-14T15:51:26Z</dc:date>
    </item>
    <item>
      <title>Re: Block authentication method change</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-authentication-method-change/m-p/107889#M9321</link>
      <description>&lt;P&gt;I would think you could set up the access roles and such that they could still authenticate but would not be able to access any of their resources unless they did Machine Authentication.&lt;BR /&gt;Don’t believe you can disable changing the authentication method on the client side short of using a different firewall for third party access.&lt;/P&gt;</description>
      <pubDate>Fri, 15 Jan 2021 05:40:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-authentication-method-change/m-p/107889#M9321</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-01-15T05:40:12Z</dc:date>
    </item>
  </channel>
</rss>

