<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Centrally Managed Remote Access VPN with Embedded Gaia in Spark Firewall (SMB)</title>
    <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3857#M35</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Just to clarify the question: are you using the 1200Rs as Remote Access Clients to a central location or are trying to access resources behind the 1200R with Remote Access Clients? More information about the type of configuration you're hoping to achieve will be helpful in providing you the right guidance.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 02 Jul 2017 17:31:40 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2017-07-02T17:31:40Z</dc:date>
    <item>
      <title>Centrally Managed Remote Access VPN with Embedded Gaia</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3855#M33</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Has anyone done this and want to share their setup? We have MANY 1200Rs we are going to be deploying and want to do a remote access VPN that uses AD groups for access. Just any clues on remote access VPN with central management on embedded GAIA would be a start. We are at a loss on getting this setup.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 02 Jul 2017 01:57:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3855#M33</guid>
      <dc:creator>Heath</dc:creator>
      <dc:date>2017-07-02T01:57:39Z</dc:date>
    </item>
    <item>
      <title>Re: Centrally Managed Remote Access VPN with Embedded Gaia</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3856#M34</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Want to add that our environment is R77.30.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 02 Jul 2017 01:59:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3856#M34</guid>
      <dc:creator>Heath</dc:creator>
      <dc:date>2017-07-02T01:59:45Z</dc:date>
    </item>
    <item>
      <title>Re: Centrally Managed Remote Access VPN with Embedded Gaia</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3857#M35</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Just to clarify the question: are you using the 1200Rs as Remote Access Clients to a central location or are trying to access resources behind the 1200R with Remote Access Clients? More information about the type of configuration you're hoping to achieve will be helpful in providing you the right guidance.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 02 Jul 2017 17:31:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3857#M35</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2017-07-02T17:31:40Z</dc:date>
    </item>
    <item>
      <title>Re: Centrally Managed Remote Access VPN with Embedded Gaia</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3858#M36</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for the quick reply Dameon. We will be accessing devices/subnets on the LAN side of the 1200Rs and the 1200Rs will be edge devices to which we would like to terminate the remote access. I've looked through the documentation specifically for the 1200Rs and the VPN setup for a centrally managed embedded device is very sparse...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 03 Jul 2017 00:58:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3858#M36</guid>
      <dc:creator>Heath</dc:creator>
      <dc:date>2017-07-03T00:58:18Z</dc:date>
    </item>
    <item>
      <title>Re: Centrally Managed Remote Access VPN with Embedded Gaia</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3859#M37</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The reason documentation is sparse specifically for the 1200R in this instance is that, when the 1200R is centrally managed, it's treated like any other Check Point gateway running R77.20 (with some limitations).&lt;/P&gt;&lt;P&gt;The one limitation relevant to this specific use case is that the Mobile Access Web Portal is not available on the 1200R (or any of the SMB appliances for that matter).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The general VPN documentation for R77.x, which covers Remote Access, is here:&amp;nbsp;&lt;A class="link-titled" href="https://sc1.checkpoint.com/documents/R77/CP_R77_VPN_AdminGuide/html_frameset.htm" title="https://sc1.checkpoint.com/documents/R77/CP_R77_VPN_AdminGuide/html_frameset.htm"&gt;https://sc1.checkpoint.com/documents/R77/CP_R77_VPN_AdminGuide/html_frameset.htm&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For each 1200R you will need to have an encryption domain defined.&lt;/P&gt;&lt;P&gt;Each 1200R you want to access resources behind should have unique IP space behind it (not used behind other gateways).&lt;/P&gt;&lt;P&gt;Each 1200R would be added to the Remote Access VPN community.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that's enough to get you started.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 03 Jul 2017 04:52:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3859#M37</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2017-07-03T04:52:42Z</dc:date>
    </item>
    <item>
      <title>Re: Centrally Managed Remote Access VPN with Embedded Gaia</title>
      <link>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3860#M38</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Check &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk118796&amp;amp;partition=Advanced&amp;amp;product=Small"&gt;sk118796&lt;/A&gt;&amp;nbsp;to see if you get the "kfunc not supported error".&amp;nbsp;It helped me to get Remote Access working in a 1470.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just configure a rule as you would for&amp;nbsp;normal internal traffic and DO NOT add the Remote_Access community to it, just leave community field blank.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 25 Jul 2017 21:02:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Spark-Firewall-SMB/Centrally-Managed-Remote-Access-VPN-with-Embedded-Gaia/m-p/3860#M38</guid>
      <dc:creator>Pedro_Espindola</dc:creator>
      <dc:date>2017-07-25T21:02:05Z</dc:date>
    </item>
  </channel>
</rss>

