<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Block Windows 7 Users Getting connected via Mobile Access in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-Windows-7-Users-Getting-connected-via-Mobile-Access/m-p/103380#M9596</link>
    <description>&lt;P&gt;Hi Mates,&lt;/P&gt;&lt;P&gt;OS: Gaia R80.10&lt;/P&gt;&lt;P&gt;We want to allow only &lt;FONT color="#993300"&gt;Windows 10&lt;/FONT&gt; users via remote access.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;To do this I have edited the scv policy and enforced it from Global Properties + Desktop Policy(Inbound/Outbound all are accepted).&lt;/P&gt;&lt;P&gt;We have edited the scv policy as below FYI: Changed the below parameter to true.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;:skip_firewall_enforcement_check&lt;/STRONG&gt;&lt;FONT color="#339966"&gt; (true)&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;(SCVObject
	:SCVNames (
                : (user_policy_scv
                        :type (plugin)
                        :parameters (
                        )
                )
                
                : (OsMonitor
                        :type (plugin)
                        :parameters (
                        :os_version_mismatchmessage ("Please upgrade your operating system to Windows 10.")
                                :send_log (alert)
                                :major_os_version_number_10 (10)
                                :minor_os_version_number_10 (0)
                                :os_version_operand_10 ("==")
                                :service_pack_major_version_number_10 (0)
                                :service_pack_minor_version_number_10 (0)
                                :service_pack_version_operand_10 ("&amp;gt;=")
                                :major_os_version_number_8_1 (6)
                                :minor_os_version_number_8_1 (3)
                                :os_version_operand_8_1 ("!=")
                                :major_os_version_number_7 (6)
                                :minor_os_version_number_7 (1)
                                :os_version_operand_7 ("!=")
	)
)
      
        )
        :SCVPolicy (
			: (OsMonitor)
        )
        :SCVGlobalParams (
                :enable_status_notifications (false)
                :status_notifications_timeout (10)
                :disconnect_when_not_verified (false)
                :block_connections_on_unverified (false)
                :scv_policy_timeout_hours (168)
                :enforce_ip_forwarding (false)
                :not_verified_script ("")
                :not_verified_script_run_show (false)
                :not_verified_script_run_admin (false)
                :not_verified_script_run_always (false)
                :allow_non_scv_clients (false)
                :skip_firewall_enforcement_check (true)
        )
)&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Even after that Windows 7/8 Users can be connected. How can we fix this?&lt;/P&gt;</description>
    <pubDate>Thu, 26 Nov 2020 06:49:06 GMT</pubDate>
    <dc:creator>Shehan_Wickrama</dc:creator>
    <dc:date>2020-11-26T06:49:06Z</dc:date>
    <item>
      <title>Block Windows 7 Users Getting connected via Mobile Access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-Windows-7-Users-Getting-connected-via-Mobile-Access/m-p/103380#M9596</link>
      <description>&lt;P&gt;Hi Mates,&lt;/P&gt;&lt;P&gt;OS: Gaia R80.10&lt;/P&gt;&lt;P&gt;We want to allow only &lt;FONT color="#993300"&gt;Windows 10&lt;/FONT&gt; users via remote access.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;To do this I have edited the scv policy and enforced it from Global Properties + Desktop Policy(Inbound/Outbound all are accepted).&lt;/P&gt;&lt;P&gt;We have edited the scv policy as below FYI: Changed the below parameter to true.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;:skip_firewall_enforcement_check&lt;/STRONG&gt;&lt;FONT color="#339966"&gt; (true)&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;(SCVObject
	:SCVNames (
                : (user_policy_scv
                        :type (plugin)
                        :parameters (
                        )
                )
                
                : (OsMonitor
                        :type (plugin)
                        :parameters (
                        :os_version_mismatchmessage ("Please upgrade your operating system to Windows 10.")
                                :send_log (alert)
                                :major_os_version_number_10 (10)
                                :minor_os_version_number_10 (0)
                                :os_version_operand_10 ("==")
                                :service_pack_major_version_number_10 (0)
                                :service_pack_minor_version_number_10 (0)
                                :service_pack_version_operand_10 ("&amp;gt;=")
                                :major_os_version_number_8_1 (6)
                                :minor_os_version_number_8_1 (3)
                                :os_version_operand_8_1 ("!=")
                                :major_os_version_number_7 (6)
                                :minor_os_version_number_7 (1)
                                :os_version_operand_7 ("!=")
	)
)
      
        )
        :SCVPolicy (
			: (OsMonitor)
        )
        :SCVGlobalParams (
                :enable_status_notifications (false)
                :status_notifications_timeout (10)
                :disconnect_when_not_verified (false)
                :block_connections_on_unverified (false)
                :scv_policy_timeout_hours (168)
                :enforce_ip_forwarding (false)
                :not_verified_script ("")
                :not_verified_script_run_show (false)
                :not_verified_script_run_admin (false)
                :not_verified_script_run_always (false)
                :allow_non_scv_clients (false)
                :skip_firewall_enforcement_check (true)
        )
)&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Even after that Windows 7/8 Users can be connected. How can we fix this?&lt;/P&gt;</description>
      <pubDate>Thu, 26 Nov 2020 06:49:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-Windows-7-Users-Getting-connected-via-Mobile-Access/m-p/103380#M9596</guid>
      <dc:creator>Shehan_Wickrama</dc:creator>
      <dc:date>2020-11-26T06:49:06Z</dc:date>
    </item>
    <item>
      <title>Re: Block Windows 7 Users Getting connected via Mobile Access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-Windows-7-Users-Getting-connected-via-Mobile-Access/m-p/103398#M9597</link>
      <description>&lt;P&gt;You also need to configure Desktop policy. Look into&amp;nbsp;&lt;SPAN&gt;sk147416, it is a mandatory step&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 26 Nov 2020 09:35:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-Windows-7-Users-Getting-connected-via-Mobile-Access/m-p/103398#M9597</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2020-11-26T09:35:35Z</dc:date>
    </item>
    <item>
      <title>Re: Block Windows 7 Users Getting connected via Mobile Access</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-Windows-7-Users-Getting-connected-via-Mobile-Access/m-p/103522#M9598</link>
      <description>&lt;P&gt;&amp;nbsp;Hi I have configured a desktop policy&amp;nbsp; already with 'any' as the column field. Its not working&lt;/P&gt;</description>
      <pubDate>Fri, 27 Nov 2020 11:24:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Block-Windows-7-Users-Getting-connected-via-Mobile-Access/m-p/103522#M9598</guid>
      <dc:creator>Shehan_Wickrama</dc:creator>
      <dc:date>2020-11-27T11:24:08Z</dc:date>
    </item>
  </channel>
</rss>

